Skip to main content

Vendor archive

ericsson CVEs

Beta · best-effort

44 CVEs tagged to vendor ericsson2 Critical, 18 High, 23 Medium, 1 Low, 0 Unrated.

CVE-2025-59174

Published Jun 5, 2026

Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially crafted messages may cause service degra…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2026-25659

Published Jun 5, 2026

Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-25658

Published Jun 5, 2026

Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-25657

Published Jun 5, 2026

Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously se…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-25660

Published Apr 24, 2026

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Authentication bypass occurs when the URL ends with Authent…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-53828

Published Apr 1, 2026

Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a vulnerability where an attacker sending a large volume of specially crafted messages may cause service degra…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-40843

Published Oct 28, 2025

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. CodeChecker versions up to 6.26.1 contain a buffer over…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-27259

Published Oct 13, 2025

Ericsson Network Manager versions prior to ENM 25.2 GA contain a vulnerability that, if exploited, can exfiltrate limited data or redirect victims to other sites or domains.

CVSS 2.4 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-27258

Published Oct 13, 2025

Ericsson Network Manager (ENM) versions prior to ENM 25.1 GA contain a vulnerability, if exploited, can result in an escalation of privilege.

CVSS 6.9 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-1300

Published Feb 28, 2025

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. The CodeChecker web server contains an open redirect vulne…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-53829

Published Jan 21, 2025

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Cross-site request forgery allows an unauthenticated attack…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-10082

Published Nov 6, 2024

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Authentication method confusion allows logging in as the bu…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-10081

Published Nov 6, 2024

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Authentication bypass occurs when the API URL ends with Aut…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-49793

Published Jun 24, 2024

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Zip files uploaded to the server endpoint of `CodeChecker st…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-25007

Published Apr 4, 2024

Ericsson Network Manager (ENM), versions prior to 23.1, contains a vulnerability in the export function of application log where Improper Neutralization of Formula Elements in a C…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-39909

Published Dec 7, 2023

Ericsson Network Manager before 23.2 mishandles Access Control and thus unauthenticated low-privilege users can access the NCM application.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-47531

Published Dec 5, 2023

An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows authenticated users to bypass system CLI and execute commands…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 44 CVEsPage 1 of 2