Nokia
Nokia Impact: vulnerabilities and CVEs
Nokia Impact has 7 published vulnerabilities, 3 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs7
Last 12 months3
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-35485 | High (8) | 0.24% | — | Mar 3, 2026 | The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload server-side executable files via the /ui/rest-proxy/application fileupload… |
| CVE-2021-35484 | High (8.2) | 0.24% | — | Mar 3, 2026 | Nokia IMPACT through 19.11.2.10-20210118042150283 allows an authenticated user to perform a Time-based Boolean Blind SQL Injection attack on the endpoint /ui/rest-proxy/campaign/statistic (for the View Campaign page)… |
| CVE-2021-35483 | Medium (4.1) | 0.23% | — | Mar 3, 2026 | The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload JavaScript files via the /ui/rest-proxy/application fileupload parameter. This… |
| CVE-2019-17406 | Medium (5.3) | 1.1% | — | Nov 25, 2019 | Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743 |
| CVE-2019-17405 | Medium (6.1) | 0.71% | — | Nov 25, 2019 | Nokia IMPACT < 18A: has Reflected self XSS |
| CVE-2019-17404 | Medium (4.3) | 0.97% | — | Nov 25, 2019 | Nokia IMPACT < 18A: allows full path disclosure |
| CVE-2019-17403 | High (8.8) | 2.5% | — | Nov 25, 2019 | Nokia IMPACT < 18A: An unrestricted File Upload vulnerability was found that may lead to Remote Code Execution. |