CVE-2025-59172

Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain an Improper Neutralization of Special Elements vulnerability allowing an attacker to execute arbitrary code as root.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-07-27 15:16

Updated : 2026-07-28 16:17


NVD link : CVE-2025-59172

Mitre link : CVE-2025-59172

CVE.ORG link : CVE-2025-59172


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')