CVE-2022-45899

Nokia Broadcast Message Center (BMC) before 13.1 allows an unauthenticated remote attacker to do OS command injection as root via shell metacharacters in the Log Scanner Search Pattern field.
References
Link Resource
https://nokia.com Not Applicable
https://www.exploit-db.com/exploits/51896 Exploit Third Party Advisory
https://www.exploit-db.com/exploits/51896 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:nokia:broadcast_message_center:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-05-08 05:16

Updated : 2026-08-12 15:36


NVD link : CVE-2022-45899

Mitre link : CVE-2022-45899

CVE.ORG link : CVE-2022-45899


JSON object : View

Products Affected

nokia

  • broadcast_message_center
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')