CVE-2025-24816
MEDIUMNokia MantaRay NM < 25R2-NM - Authenticated API Information Disclosure
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2025-24816. PoCs published by HermesNA-1.
AI-analyzed exploit summary This repository contains an auto-generated stub module for CVE-2025-24816, an Improper Access Control vulnerability in Nokia MantaRay's API. The code includes placeholder methods (`check` and `run`) but lacks actual exploit implementation, referencing only a Nokia advisory for details.
Description
Nokia MantaRay is subject to an Improper Access Control vulnerability due to insufficient authorization within the API. Successful exploitation could allow an authenticated attacker to retrieve confidential information beyond their assigned privileges.
Exploits (1)
This repository contains an auto-generated stub module for CVE-2025-24816, an Improper Access Control vulnerability in Nokia MantaRay's API. The code includes placeholder methods (`check` and `run`) but lacks actual exploit implementation, referencing only a Nokia advisory for details.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N