CVE-2025-27260
Awaiting Analysis
Awaiting Analysis - Queue
Improper Filtering Vulnerability in Ericsson Indoor Connect 8855 Allows Unauthorized Data Modification
Publication date: 2026-03-25
Last updated on: 2026-03-27
Assigner: Ericsson
Description
Description
Ericsson
Indoor Connect 8855 versions prior to 2025.Q3 contains an Improper Filtering of Special
Elements vulnerability which, if exploited, can lead to unauthorized
modification of certain information
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| ericsson | indoor_connect_8855_firmware | to 2025.q3 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-790 | The product receives data from an upstream component, but does not filter or incorrectly filters special elements before sending it to a downstream component. |