CVE-2023-25189
CVSS 3.1 Score 3.3 of 10 (low)
Details
Summary
CVE-2023-25189 is a newly discovered information disclosure vulnerability affecting BTS (Broadband Transmission System). The issue arises when mobile network operator personnel accessing BTS Web Element Manager can unintentionally view sensitive BTS service operation details, regardless of their access privileges. These details are typically handled by Nokia Care service personnel via Secure Shell (SSH). The vulnerability poses a risk to the confidentiality of network operations and requires immediate attention from BTS users and administrators. It is recommended that affected organizations apply patches or mitigations to contain the potential exposure.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.