Beveiligingsadvies

CVE-2024-25008

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-08-16 09:42:21
Laatst bijgewerkt 2024-08-16 13:50:48
Toegewezen door ERIC
CVSS-score 6.8
Status PUBLISHED

Beschrijving

Ericsson RAN Compute and Site Controller 6610 contains a vulnerability in the Control System where Improper Input Validation can lead to arbitrary code execution, for example to obtain a Linux Shell with the same privileges as the attacker. The attacker would require elevated privileges for example a valid OAM user having the system administrator role to exploit the vulnerability.