CVE-2025-40837

Ericsson Indoor Connect 8855 contains a missing authorization vulnerability which if exploited can allow access to the system as a user with higher privileges than intended.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ericsson:indoor_connect_8855_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ericsson:indoor_connect_8855:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-09-25 15:16

Updated : 2025-10-02 17:59


NVD link : CVE-2025-40837

Mitre link : CVE-2025-40837

CVE.ORG link : CVE-2025-40837


JSON object : View

Products Affected

ericsson

  • indoor_connect_8855
  • indoor_connect_8855_firmware
CWE
CWE-862

Missing Authorization