Show filters
37 Total Results
Displaying 21-30 of 37
Sort by:
Attacker Value
Unknown

CVE-2020-29144

Disclosure Date: November 27, 2020 (last updated February 22, 2025)
In Ericsson BSCS iX R18 Billing & Rating iX R18, MX is a web base module in BSCS iX that is vulnerable to stored XSS via an Alert Dashboard comment. In most test cases, session hijacking was also possible by utilizing the XSS vulnerability. This potentially allows for full account takeover, or exploiting admins' browsers by using the beef framework.
Attacker Value
Unknown

CVE-2020-29145

Disclosure Date: November 27, 2020 (last updated February 22, 2025)
In Ericsson BSCS iX R18 Billing & Rating iX R18, ADMX is a web base module in BSCS iX that is vulnerable to stored XSS via the name or description field to a solutionUnitServlet?SuName=UserReferenceDataSU Access Rights Group. In most test cases, session hijacking was also possible by utilizing the XSS vulnerability. This potentially allows for full account takeover, or exploiting admins' browsers by using the beef framework.
Attacker Value
Unknown

CVE-2020-7824

Disclosure Date: August 25, 2020 (last updated February 22, 2025)
A vulnerability in the web-based management interface of iPECS could allow an authenticated, remote attacker to get administrator permission. The vulnerability is due to insecure permission when handling session cookies. An attacker could exploit this vulnerability by modification the cookie value to an affected device. A successful exploit could allow the attacker access to sensitive device information, which includes configuration files.
Attacker Value
Unknown

CVE-2019-7417

Disclosure Date: March 21, 2019 (last updated November 27, 2024)
XSS exists in Ericsson Active Library Explorer (ALEX) 14.3 in multiple parameters in the "/cgi-bin/alexserv" servlet, as demonstrated by the DB, FN, fn, or id parameter.
0
Attacker Value
Unknown

CVE-2018-15138

Disclosure Date: August 15, 2018 (last updated November 27, 2024)
Ericsson-LG iPECS NMS 30M allows directory traversal via ipecs-cm/download?filename=../ URIs.
0
Attacker Value
Unknown

CVE-2018-10285

Disclosure Date: April 22, 2018 (last updated November 26, 2024)
The Ericsson-LG iPECS NMS A.1Ac web application uses incorrect access control mechanisms. Since the app does not use any sort of session ID, an attacker might bypass authentication.
0
Attacker Value
Unknown

CVE-2018-10286

Disclosure Date: April 22, 2018 (last updated November 26, 2024)
The Ericsson-LG iPECS NMS A.1Ac web application discloses sensitive information such as the NMS admin credentials and the PostgreSQL database credentials to logged-in users via the responses to certain HTTP POST requests. In order to be able to see the credentials in cleartext, an attacker needs to be authenticated.
0
Attacker Value
Unknown

CVE-2018-9245

Disclosure Date: April 22, 2018 (last updated November 26, 2024)
The Ericsson-LG iPECS NMS A.1Ac login portal has a SQL injection vulnerability in the User ID and password fields that allows users to bypass the login page and execute remote code on the operating system.
0
Attacker Value
Unknown

CVE-2015-2167

Disclosure Date: April 06, 2015 (last updated October 05, 2023)
Open redirect vulnerability in the 3PI Manager in Ericsson Drutt Mobile Service Delivery Platform (MSDP) 4, 5, and 6 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter to jsp/start-3pi-manager.jsp.
0
Attacker Value
Unknown

CVE-2015-2166

Disclosure Date: April 06, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in the Instance Monitor in Ericsson Drutt Mobile Service Delivery Platform (MSDP) 4, 5, and 6 allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the default URI.
0