High severity7.1NVD Advisory· Published Apr 4, 2024· Updated Jun 17, 2026
CVE-2024-25007
CVE-2024-25007
Description
Ericsson Network Manager (ENM), versions prior to 23.1, contains a vulnerability in the export function of application log where Improper Neutralization of Formula Elements in a CSV File can lead to code execution or information disclosure. There is limited impact to integrity and availability. The attacker on the adjacent network with administration access can exploit the vulnerability.
Affected products
3<23.1+ 1 more
- (no CPE)range: <23.1
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.