← Back

Infinera Mtc 9 Firmware

infinera_mtc-9_firmware

Vendor: Nokia • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nokia
1Infinera Mtc 9 Firmware
Jun 17, 2026
Dec 8, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Improper configuration of the SSH service in Infinera MTC-9 allows an unauthenticated attacker to execute arbitrary commands and access data on file system . This issue affects MTC-9: from R22.1.1.0275 before R23.0.
1Nokia
1Infinera Mtc 9 Firmware
Jun 17, 2026
Dec 8, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Remote shell service (RSH) in Infinera MTC-9 version R22.1.1.0275 allows an attacker to utilize password-less user accounts and obtain system access by activating a reverse shell.This issue affects MTC-9: from R22.1.1....Show more
Remote shell service (RSH) in Infinera MTC-9 version R22.1.1.0275 allows an attacker to utilize password-less user accounts and obtain system access by activating a reverse shell.This issue affects MTC-9: from R22.1.1.0275 before R23.0.Show less
1Nokia
1Infinera Mtc 9 Firmware
Jun 17, 2026
Dec 8, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper input validation in the Netconf service in Infinera MTC-9 allows remote authenticated users to crash the service and reboot the appliance, thus causing a DoS condition, via crafted XML payloads.This issue affe...Show more
Improper input validation in the Netconf service in Infinera MTC-9 allows remote authenticated users to crash the service and reboot the appliance, thus causing a DoS condition, via crafted XML payloads.This issue affects MTC-9: from R22.1.1.0275 before R23.0.Show less
1Nokia
1Infinera Mtc 9 Firmware
Jun 17, 2026
Dec 8, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper Input Validation vulnerability in Infinera MTC-9 allows remote unauthenticated users to crash the service and cause a reboot of the appliance, thus causing a DoS condition, via crafted XML payloads.This issue...Show more
Improper Input Validation vulnerability in Infinera MTC-9 allows remote unauthenticated users to crash the service and cause a reboot of the appliance, thus causing a DoS condition, via crafted XML payloads.This issue affects MTC-9: from R22.1.1.0275 before R23.0.Show less
1Nokia
1Infinera Mtc 9 Firmware
Jun 17, 2026
Dec 8, 2025
N/A· v4
8.6 HIGH· v3
N/A· v2
Server-Side Request Forgery (SSRF) vulnerability in Infinera MTC-9 version allows remote unauthenticated users to gain access to other network resources using HTTPS requests through the appliance used as a bridge.