CVE-2022-47531

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
05/12/2023
Last modified:
11/12/2023

Description

An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows authenticated users to bypass system CLI and execute commands they are authorized to execute directly in the UNIX shell.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ericsson:evolved_packet_gateway:*:*:*:*:*:*:*:* 2.0 (including) 2.16 (excluding)
cpe:2.3:a:ericsson:evolved_packet_gateway:*:*:*:*:*:*:*:* 3.0 (including) 3.25 (excluding)


References to Advisories, Solutions, and Tools