PT-2026-1577 · Nokia · Nokia Sr Linux

Published

2026-01-07

·

Updated

2026-01-07

·

CVE-2025-0980

CVSS v3.1

6.4

Medium

VectorAV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Nokia SR Linux (affected versions not specified)
Description An authentication issue exists in Nokia SR Linux that permits unauthorized access to the JSON-RPC service. A flawed validation process allows access to the service without requiring valid authentication credentials.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-0980

Affected Products

Nokia Sr Linux