Ericsson Indoor Connect Missing Authorization Vulnerability Allowing Privilege Escalation

Vulnerability

A missing authorization vulnerability has been identified in Ericsson Indoor Connect version 8855. This vulnerability can be exploited to gain access to the system with higher privileges than intended.

Impact

Exploitation of this vulnerability could lead to unauthorized access with elevated privileges, allowing users to perform actions or access resources that are normally restricted.

Remediation

Users are advised to upgrade to Ericsson Indoor Connect version 2025.Q2, which addresses this vulnerability.

Added: Sep 25, 2025, 3:26 PM
Updated: Sep 25, 2025, 3:26 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.