Vulnerability record · CVE-2021-31932 · published 11 February 2022
CVE-2021-31932: Nokia bts trs web console vulnerability
Nokia · Bts Trs Web Console
Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can get access to all the functionalities exposed via the web panel, circumventing the authentication process, by using URL encoding for the . (dot) character.
Description
Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can get access to all the functionalities exposed via the web panel, circumventing the authentication process, by using URL encoding for the . (dot) character.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://packetstormsecurity.com/files/165964/Nokia-Transport-Module-Authentication-Bypass.html | ExploitThird Party AdvisoryVDB Entry |
| http://packetstormsecurity.com/files/165964/Nokia-Transport-Module-Authentication-Bypass.html | ExploitThird Party AdvisoryVDB Entry |
Track CVE-2021-31932 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Source: NIST National Vulnerability Database (record CVE-2021-31932), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.