Security Advisory

CVE-2018-10285

9.8
CRITICAL

Vulnerability Description

The Ericsson-LG iPECS NMS A.1Ac web application uses incorrect access control mechanisms. Since the app does not use any sort of session ID, an attacker might bypass authentication.
Published Date April 22, 2018
Official Source NIST NVD Advisory