Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2021-41391
Disclosure Date: September 17, 2021 (last updated February 23, 2025)
In Ericsson ECM before 18.0, it was observed that Security Management Endpoint in User Profile Management Section is vulnerable to stored XSS via a name, leading to session hijacking and full account takeover.
0
Attacker Value
Unknown
CVE-2021-41390
Disclosure Date: September 17, 2021 (last updated February 23, 2025)
In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is vulnerable to CSV Injection.
0