CVE-2025-59181
- EPSS 0.27%
- Veröffentlicht 27.07.2026 14:21:48
- Zuletzt bearbeitet 28.07.2026 16:17:16
Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a directory traversal vulnerability in Configuration Management that could allow an attacker to change directory permissions, denying access to legitimate users.
CVE-2025-59180
- EPSS 0.11%
- Veröffentlicht 27.07.2026 14:19:16
- Zuletzt bearbeitet 28.07.2026 16:17:16
Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a hardcoded credential vulnerability in the alarm system. An attacker with access to the cluster with knowledge of the hardcoded credential can read alarm and alert information.
CVE-2025-59178
- EPSS 0.15%
- Veröffentlicht 27.07.2026 14:15:45
- Zuletzt bearbeitet 28.07.2026 16:17:16
Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain an Exposure of Sensitive System Information vulnerability in Configuration Management allowing an attacker to enumerate other users on the system.
CVE-2025-59177
- EPSS 0.15%
- Veröffentlicht 27.07.2026 14:11:59
- Zuletzt bearbeitet 28.07.2026 16:17:16
Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages.
CVE-2025-59172
- EPSS 0.18%
- Veröffentlicht 27.07.2026 14:03:14
- Zuletzt bearbeitet 28.07.2026 16:17:16
Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain an Improper Neutralization of Special Elements vulnerability allowing an attacker to execute arbitrary code as root.
CVE-2025-59174
- EPSS 0.17%
- Veröffentlicht 05.06.2026 13:44:39
- Zuletzt bearbeitet 08.06.2026 14:24:05
Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially crafted messages may cause service degradation.
CVE-2024-53828
- EPSS 0.36%
- Veröffentlicht 01.04.2026 09:49:18
- Zuletzt bearbeitet 10.04.2026 15:44:45
Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a vulnerability where an attacker sending a large volume of specially crafted messages may cause service degradation.