Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-25008

Опубликовано: 16 авг. 2024
Источник: nvd
CVSS3: 6.8
EPSS Низкий

Описание

Ericsson RAN Compute and Site Controller 6610 contains a vulnerability in the Control System where Improper Input Validation can lead to arbitrary code execution, for example to obtain a Linux Shell with the same privileges as the attacker. The attacker would require elevated privileges for example a valid OAM user having the system administrator role to exploit the vulnerability.

EPSS

Процентиль: 15%
0.0005
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.8
github
больше 1 года назад

Ericsson RAN Compute and Site Controller 6610 contains a vulnerability in the Control System where Improper Input Validation can lead to arbitrary code execution, for example to obtain a Linux Shell with the same privileges as the attacker. The attacker would require elevated privileges for example a valid OAM user having the system administrator role to exploit the vulnerability.

EPSS

Процентиль: 15%
0.0005
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-20