Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 21 Oct 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ericsson:network_manager:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Mon, 20 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson
Ericsson network Manager |
|
| Vendors & Products |
Ericsson
Ericsson network Manager |
Tue, 14 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 13 Oct 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ericsson Network Manager versions prior to ENM 25.2 GA contain a vulnerability that, if exploited, can exfiltrate limited data or redirect victims to other sites or domains. | |
| Title | Ericsson Network Manager: improper neutralization of user controlled input | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ERIC
Published:
Updated: 2025-10-14T16:06:38.469Z
Reserved: 2025-02-21T08:58:20.367Z
Link: CVE-2025-27259
Updated: 2025-10-14T16:01:09.566Z
Status : Analyzed
Published: 2025-10-13T07:15:54.993
Modified: 2025-10-21T17:17:14.087
Link: CVE-2025-27259
No data.
OpenCVE Enrichment
Updated: 2025-10-20T16:13:33Z