PT-2026-64919 · Ericsson · Packet Core Controller

·

CVE-2025-59181

·

Published

2026-07-27

·

Updated

2026-07-27

CVSS v4.0

4.8

Medium

VectorAV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions Ericsson Packet Core Controller (PCC) versions prior to 1.39
Description A directory traversal issue exists in Configuration Management. This flaw allows an attacker to manipulate directory permissions, which can result in a denial of service by preventing legitimate users from accessing the system.
Recommendations Update to version 1.39 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-59181

Affected Products

Packet Core Controller