VendorsEricssonenterprise_content_managementall versions
Vulnerabilities

Ericsson Enterprise Content Management (ECM)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2021-41390
In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is vulnerable to CSV Injection.
Published 2021-09-17 · Modified
8.0EPSS 0.011
CVE-2021-41391
In Ericsson ECM before 18.0, it was observed that Security Management Endpoint in User Profile Management Section is vulnerable to stored XSS via a name, leading to session hijacking and full account takeover.
Published 2021-09-17 · Modified
5.4EPSS 0.006