### [CVE-2021-31932](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-31932) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen) ### Description Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can get access to all the functionalities exposed via the web panel, circumventing the authentication process, by using URL encoding for the . (dot) character. ### POC #### Reference - http://packetstormsecurity.com/files/165964/Nokia-Transport-Module-Authentication-Bypass.html #### Github - https://github.com/cmaruti/reports