CVE-2018-15138: Ericssonlg Ipecs Nms

High severity, CVSS 7.5. EPSS: 12.9% chance of exploitation in the next 30 days.

Ericsson-LG iPECS NMS 30M allows directory traversal via ipecs-cm/download?filename=../ URIs.

Affected products

  • Ericssonlg Ipecs Nms: version 30m-2.3gn only; version 30m-b.2ia only

Published 2018-08-15. Last modified 2026-06-17.