CVE-2025-24816

Nokia MantaRay is subject to an Improper Access Control vulnerability due to insufficient authorization within the API. Successful exploitation could allow an authenticated attacker to retrieve confidential information beyond their assigned privileges.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nokia:mantaray_nm:*:*:*:*:*:*:*:*

History

10 Jul 2026, 17:08

Type Values Removed Values Added
References () https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-24816/ - () https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-24816/ - Vendor Advisory
First Time Nokia
Nokia mantaray Nm
CPE cpe:2.3:a:nokia:mantaray_nm:*:*:*:*:*:*:*:*

30 Jun 2026, 14:16

Type Values Removed Values Added
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

30 Jun 2026, 12:16

Type Values Removed Values Added
References
  • {'url': 'https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2026-24816/', 'source': 'b48c3b8f-639e-4c16-8725-497bc411dad0'}
  • () https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-24816/ -

30 Jun 2026, 10:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-30 10:16

Updated : 2026-07-10 17:08


NVD link : CVE-2025-24816

Mitre link : CVE-2025-24816

CVE.ORG link : CVE-2025-24816


JSON object : View

Products Affected

nokia

  • mantaray_nm
CWE
CWE-284

Improper Access Control