ZeroHour

CVE-2021-41390

PoC
CVSS 3.1
8.0 high
EPSS
1%p64
Published
()
Modified
Description

In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is vulnerable to CSV Injection.

Vendors
ericsson
Products
enterprise content management
Weakness
CWE-74
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.