CVE-2025-27260 PUBLISHED

Ericsson Indoor Connect 8855 - Improper Filtering of Special Elements Vulnerability

Assigner: ERIC
Reserved: 21.02.2025 Published: 25.03.2026 Updated: 25.03.2026

Ericsson Indoor Connect 8855 versions prior to 2025.Q3 contains an Improper Filtering of Special Elements vulnerability which, if exploited, can lead to unauthorized modification of certain information

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 7.2

Product Status

Vendor Ericsson
Product Indoor Connect 8855
Versions Default: affected
  • affected from 0 to 2025.Q3 (excl.)

Credits

  • Telstra finder

References

Problem Types

  • CWE-790 CWE