Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 09 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nokia impact Mobile
|
|
| CPEs | cpe:2.3:a:nokia:impact_mobile:*:-:*:*:*:*:*:* | |
| Vendors & Products |
Nokia impact Mobile
|
Wed, 04 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
ssvc
|
Wed, 04 Mar 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nokia
Nokia impact |
|
| Vendors & Products |
Nokia
Nokia impact |
Tue, 03 Mar 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in Nokia Impact before Mobile 23_FP1. In Impact DM 19.11 onwards, a remote authenticated user, using the Add Campaign functionality, can inject a malicious payload within the Campaign Name. This data can be exported to a CSV file. Attackers can populate data fields that may attempt data exfiltration or other malicious activity when automatically executed by the spreadsheet software. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-03-04T14:40:29.902Z
Reserved: 2023-04-23T00:00:00.000Z
Link: CVE-2023-31044
Updated: 2026-03-04T14:40:21.966Z
Status : Analyzed
Published: 2026-03-03T18:16:21.193
Modified: 2026-03-09T13:38:49.577
Link: CVE-2023-31044
No data.
OpenCVE Enrichment
Updated: 2026-03-04T14:54:58Z