VYPR
Medium severity6.5NVD Advisory· Published Jun 30, 2026· Updated Jul 10, 2026

CVE-2025-24816

CVE-2025-24816

Description

Nokia MantaRay is subject to an Improper Access Control vulnerability due to insufficient authorization within the API. Successful exploitation could allow an authenticated attacker to retrieve confidential information beyond their assigned privileges.

Affected products

2
  • Nokia/Mantaray Nm2 versions
    cpe:2.3:a:nokia:mantaray_nm:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nokia:mantaray_nm:*:*:*:*:*:*:*:*range: <25R2-NM
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.