Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-22129 | Nokia Broadcast Message Center through 11.1.0 allows an authenticated user to perform a Boolean Blind SQL Injection attack on the endpoint /owui/block/send-receive-updates (for the Manage Alerts page) via the extIdentifier HTTP POST parameter. This allows an attacker to obtain the database user, database name, and database version information, and potentially database data. |
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T00:40:46.310Z
Reserved: 2021-06-24T00:00:00.000Z
Link: CVE-2021-35487
No data.
Status : Modified
Published: 2022-05-25T14:15:08.583
Modified: 2026-06-17T03:57:33.657
Link: CVE-2021-35487
No data.
OpenCVE Enrichment
No data.
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD