Ericsson Indoor Connect SQL Injection Vulnerability

Vulnerability

A SQL injection vulnerability has been identified in Ericsson Indoor Connect version 8855. This vulnerability allows for unauthorized disclosure and modification of user and configuration data.

Impact

Exploitation of this vulnerability could lead to unauthorized access to and alteration of user and configuration data.

Remediation

Users are advised to upgrade to Ericsson Indoor Connect version 2025.Q2, which addresses this vulnerability.

Added: Sep 25, 2025, 2:24 PM
Updated: Sep 25, 2025, 2:24 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.