ZeroHour

CVE-2018-9245

CVSS 3.0
9.8 critical
EPSS
4%p90
Published
()
Modified
Description

The Ericsson-LG iPECS NMS A.1Ac login portal has a SQL injection vulnerability in the User ID and password fields that allows users to bypass the login page and execute remote code on the operating system.

Vendors
ericssonlg
Products
ipecs nms
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.