In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is vulnerable to CSV Injection.
2021-09-17T21:15:07.633
2024-11-21T06:26:11.510
Modified
CVSSv3.1: 8.0 (HIGH)
AV:N/AC:M/Au:S/C:P/I:P/A:P
6.8
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ericsson | enterprise_content_management | 18.0 | Yes |