CVE-2025-24816 PUBLISHED

An Improper Access Control vulnerability in Nokia MantaRay NM

Assigner: Nokia
Reserved: 24.01.2025 Published: 30.06.2026 Updated: 30.06.2026

Nokia MantaRay is subject to an Improper Access Control vulnerability due to insufficient authorization within the API. Successful exploitation could allow an authenticated attacker to retrieve confidential information beyond their assigned privileges.

Product Status

Vendor Nokia
Product MantaRay NM
Versions
  • Version <25R2-NM is affected
  • Version ≥25R2-NM is unaffected

References