Beveiligingsadvies

CVE-2022-46407

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-06-29 00:00:00
Laatst bijgewerkt 2024-11-27 14:32:28
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” where Open Redirect HTTP Header Injection can lead to redirection of the submitted request to domain out of control of ENM deployment. The attacker would need admin/elevated access to exploit the vulnerability