İçeriğe atla
Noroxi

Ericsson kayıtları

ericsson üreticisine ait 45 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%51,1
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

45 kayıt
  • CVE-2024-10081
    52Planlayın

    CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy.

    KritikCVSS 10,0Kavram kanıtıEPSS %40

    ericsson · codechecker6 Kas 2024

  • CVE-2021-43339
    38İzleyin

    In Ericsson Network Location before 2021-07-31, it is possible for an authenticated attacker to inject commands via file_name in the export

    YüksekCVSS 8,8Kavram kanıtıEPSS %10

    ericsson · network location3 Kas 2021

  • CVE-2026-25660
    37İzleyin

    Authentication bypass for certain API calls

    KritikCVSS 9,3İstismar yokEPSS %1

    ericsson · codechecker24 Nis 2026

  • CVE-2024-10082
    36İzleyin

    CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy.

    KritikCVSS 9,0İstismar yokEPSS %0

    ericsson · codechecker6 Kas 2024

  • CVE-2022-47531
    35İzleyin

    An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows authenticated users to

    YüksekCVSS 8,8İstismar yokEPSS %1

    ericsson · evolved packet gateway5 Ara 2023

  • CVE-2023-39909
    35İzleyin

    Ericsson Network Manager before 23.2 mishandles Access Control and thus unauthenticated low-privilege users can access the NCM application.

    YüksekCVSS 8,8İstismar yokEPSS %1

    ericsson · network manager7 Ara 2023

  • CVE-2025-27262
    34İzleyin

    Ericsson Indoor Connect 8855 - Improper Neutralization of Special Elements used in an OS Command Vulnerability

    YüksekCVSS 8,5İstismar yokEPSS %1

    ericsson · indoor connect 8855 firmware25 Eyl 2025

  • CVE-2025-40836
    34İzleyin

    Ericsson Indoor Connect 8855 - Improper Input Validation Vulnerability

    YüksekCVSS 8,7İstismar yokEPSS %0

    ericsson · indoor connect 8855 firmware25 Eyl 2025

  • CVE-2025-27261
    34İzleyin

    Ericsson Indoor Connect 8855 - Improper Neutralization of Special Elements used in an SQL Command Vulnerability

    YüksekCVSS 8,7İstismar yokEPSS %0

    ericsson · indoor connect 8855 firmware25 Eyl 2025

  • CVE-2025-40837
    34İzleyin

    Ericsson Indoor Connect 8855 - Missing Authorization Vulnerability

    YüksekCVSS 8,7İstismar yokEPSS %0

    ericsson · indoor connect 8855 firmware25 Eyl 2025

  • CVE-2025-40842
    34İzleyin

    Ericsson Indoor Connect 8855 - Improper Neutralization of Input During Web Page Generation Vulnerability

    YüksekCVSS 8,5İstismar yokEPSS %0

    ericsson · indoor connect 8855 firmware25 Mar 2026

  • CVE-2021-41390
    32İzleyin

    In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is vulnerable to CSV Inj

    YüksekCVSS 8,0İstismar yokEPSS %1

    ericsson · enterprise content management17 Eyl 2021

  • CVE-2024-53829
    32İzleyin

    Cross-Site Request Forgery in CodeChecker API

    YüksekCVSS 8,2İstismar yokEPSS %0

    ericsson · codechecker21 Oca 2025

  • CVE-2003-1442
    31İzleyin

    The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remote attackers to gain

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    ericsson · hm220dp adsl modem31 Ara 2003

  • CVE-2025-40843
    31İzleyin

    Buffer overflow in CodeChecker log command

    YüksekCVSS 7,8İstismar yokEPSS %0

    ericsson · codechecker28 Eki 2025

  • CVE-2015-2166
    28İzleyin

    Directory traversal vulnerability in the Instance Monitor in Ericsson Drutt Mobile Service Delivery Platform (MSDP) 4, 5, and 6 allows remot

    OrtaCVSS 5,0Kavram kanıtıEPSS %27

    ericsson · drutt mobile service delivery platform6 Nis 2015

  • CVE-2024-25007
    28İzleyin

    Ericsson Network Manager - Improper Neutralization of Formula Elements Vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · network manager4 Nis 2024

  • CVE-2026-25658
    28İzleyin

    Ericsson Packet Core Gateway (PCG) - Improper handling of missing values Vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · packet core gateway5 Haz 2026

  • CVE-2026-25659
    28İzleyin

    Ericsson Packet Core Gateway (PCG) - Improper handling of missing values Vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · packet core gateway5 Haz 2026

  • CVE-2026-25657
    28İzleyin

    Ericsson Packet Core Gateway (PCG) - Improper Handling of Syntactically Invalid Structure Vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · packet core gateway5 Haz 2026

  • CVE-2025-27260
    28İzleyin

    Ericsson Indoor Connect 8855 - Improper Filtering of Special Elements Vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %0

    ericsson · indoor connect 8855 firmware25 Mar 2026

  • CVE-2025-59174
    28İzleyin

    Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially c

    YüksekCVSS 7,1İstismar yokEPSS %0

    ericsson · packet core controller5 Haz 2026

  • CVE-2022-46408
    27İzleyin

    Ericsson Network Manager (ENM), versions prior to 22.1, contains a vulnerability in the application Network Connectivity Manager (NCM) where

    OrtaCVSS 6,8İstismar yokEPSS %1

    ericsson · network manager28 Haz 2023

  • CVE-2025-27258
    27İzleyin

    Ericsson Network Manager: escalation of privilege vulnerability

    OrtaCVSS 6,9İstismar yokEPSS %0

    ericsson · network manager13 Eki 2025

  • CVE-2024-25008
    27İzleyin

    Ericsson RAN Compute and Site Controller 6610 - Improper Input Validation Vulnerability

    OrtaCVSS 6,8İstismar yokEPSS %0

    ericsson · ericsson ran compute basebands (all bb variants)16 Ağu 2024