Ericsson RAN Compute and Site Controller 6610 contains a vulnerability in the Control System where Improper Input Validation can lead to arbitrary code execution, for example to obtain a Linux Shell with the same privileges as the attacker. The attacker would require elevated privileges for example a valid OAM user having the system administrator role to exploit the vulnerability.
References
Configurations
No configuration.
History
19 Aug 2024, 13:00
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
16 Aug 2024, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-16 10:15
Updated : 2024-08-19 13:00
NVD link : CVE-2024-25008
Mitre link : CVE-2024-25008
CVE.ORG link : CVE-2024-25008
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation