CVE-2025-27258

Severity CVSS v4.0:
MEDIUM
Type:
CWE-284 Improper Access Control
Publication date:
13/10/2025
Last modified:
21/10/2025

Description

Ericsson Network Manager (ENM) versions prior to ENM 25.1 GA contain a vulnerability, if exploited, can result in an escalation of privilege.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ericsson:network_manager:*:*:*:*:*:*:*:* 25.1 (excluding)