Nokia Broadcast Message Center (BMC) before 13.1 allows an unauthenticated remote attacker to do OS command injection as root via shell metacharacters in the Log Scanner Search Pattern field.
References
Configurations
No configuration.
History
08 May 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-78 | |
| References | () https://www.exploit-db.com/exploits/51896 - | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
08 May 2026, 05:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-08 05:16
Updated : 2026-05-08 16:02
NVD link : CVE-2022-45899
Mitre link : CVE-2022-45899
CVE.ORG link : CVE-2022-45899
JSON object : View
Products Affected
No product.
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
