Search Results (5 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-27261 1 Ericsson 1 Indoor Connect 8855 2025-09-26 N/A
Ericsson Indoor Connect 8855 contains a SQL injection vulnerability which if exploited can lead to unauthorized disclosure and modification of user and configuration data.
CVE-2025-27262 1 Ericsson 1 Indoor Connect 8855 2025-09-26 N/A
Ericsson Indoor Connect 8855 contains a command injection vulnerability which if exploited can lead to loss of integrity and confidentiality, as well as unauthorized disclosure and modification of user and configuration data. It may also be possible to execute commands with escalated privileges, impact service availability, as well as modify system files and configuration data.
CVE-2025-40836 1 Ericsson 1 Indoor Connect 8855 2025-09-26 N/A
Ericsson Indoor Connect 8855 contains an improper input validation vulnerability which if exploited can lead to loss of integrity and confidentiality, as well as unauthorized disclosure and modification of of user and configuration data. It may also be possible to execute commands with escalated privileges, impact service availability, as well as modify system files and configuration data.
CVE-2025-40837 1 Ericsson 1 Indoor Connect 8855 2025-09-26 N/A
Ericsson Indoor Connect 8855 contains a missing authorization vulnerability which if exploited can allow access to the system as a user with higher privileges than intended.
CVE-2025-40838 1 Ericsson 1 Indoor Connect 8855 2025-09-26 N/A
Ericsson Indoor Connect 8855 contains a vulnerability where server-side security can be bypassed in the client which if exploited can lead to unauthorized disclosure of user accounts.