CVE-2025-7406

Nokia MantaRay NM is vulnerable to a sudo privilege escalation vulnerability where a local attacker possessing administrative (local admin) privileges can escalate to full root privileges on the host. Successful exploitation results in root-level access to the filesystem and the ability to execute actions as root. The risk can be temporarily mitigated by restricting the set of commands permitted via sudo for the affected accounts.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nokia:mantaray_nm:*:*:*:*:*:*:*:*

History

10 Jul 2026, 17:17

Type Values Removed Values Added
CPE cpe:2.3:a:nokia:mantaray_nm:*:*:*:*:*:*:*:*
References () https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-7406/ - () https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-7406/ - Vendor Advisory
First Time Nokia
Nokia mantaray Nm

30 Jun 2026, 14:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CWE CWE-269

30 Jun 2026, 10:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-30 10:16

Updated : 2026-07-10 17:17


NVD link : CVE-2025-7406

Mitre link : CVE-2025-7406

CVE.ORG link : CVE-2025-7406


JSON object : View

Products Affected

nokia

  • mantaray_nm
CWE
CWE-269

Improper Privilege Management