Ericsson Indoor Connect 8855 contains an improper input validation vulnerability which if exploited can allow an attacker to execute commands with escalated privileges.
Metrics
Affected Vendors & Products
References
History
Tue, 30 Sep 2025 12:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Ericsson Indoor Connect 8855 contains an improper input validation vulnerability which if exploited can lead to loss of integrity and confidentiality, as well as unauthorized disclosure and modification of of user and configuration data. It may also be possible to execute commands with escalated privileges, impact service availability, as well as modify system files and configuration data. | Ericsson Indoor Connect 8855 contains an improper input validation vulnerability which if exploited can allow an attacker to execute commands with escalated privileges. |
Fri, 26 Sep 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ericsson
Ericsson indoor Connect 8855 |
|
Vendors & Products |
Ericsson
Ericsson indoor Connect 8855 |
Thu, 25 Sep 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 25 Sep 2025 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Ericsson Indoor Connect 8855 contains an improper input validation vulnerability which if exploited can lead to loss of integrity and confidentiality, as well as unauthorized disclosure and modification of of user and configuration data. It may also be possible to execute commands with escalated privileges, impact service availability, as well as modify system files and configuration data. | |
Title | Ericsson Indoor Connect 8855 - Improper Input Validation Vulnerability | |
Weaknesses | CWE-20 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: ERIC
Published:
Updated: 2025-09-30T12:14:36.904Z
Reserved: 2025-04-16T08:59:01.744Z
Link: CVE-2025-40836

Updated: 2025-09-25T15:44:37.067Z

Status : Awaiting Analysis
Published: 2025-09-25T15:16:11.233
Modified: 2025-09-30T13:15:49.193
Link: CVE-2025-40836

No data.

Updated: 2025-09-26T11:35:43Z