CVE-2018-9245

The Ericsson-LG iPECS NMS A.1Ac login portal has a SQL injection vulnerability in the User ID and password fields that allows users to bypass the login page and execute remote code on the operating system.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ericssonlg:ipecs_nms:a.1ac:*:*:*:*:*:*:*

Information

Published : 2018-04-22 06:29

Updated : 2018-05-25 08:33


NVD link : CVE-2018-9245

Mitre link : CVE-2018-9245


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

ericssonlg

  • ipecs_nms