High severity8.0NVD Advisory· Published Mar 3, 2026· Updated Jun 17, 2026
CVE-2021-35485
CVE-2021-35485
Description
The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload server-side executable files via the /ui/rest-proxy/application fileupload parameter. This can occur during the adding of a new application, or during the editing of an existing one.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- www.gruppotim.it/it/footer/red-team/2021/Motive-Impact-CVE-2021-35485.htmlnvdVendor Advisory
- www.nokia.com/networks/solutions/impact-iot-platform/nvdProduct
- www.nokia.com/notices/responsible-disclosure/nvdIssue Tracking
News mentions
0No linked articles in our index yet.