CVE-2025-0636: Ericsson Ran Compute All Bb Versions

High severity, CVSS 8.4. EPSS: 0.3% chance of exploitation in the next 30 days.

EMCLI contains a high severity vulnerability where improper neutralization of special elements used in an OS command could be exploited leading to Arbitrary Code Execution.

Affected products

  • Ericsson Ran Compute All Bb Versions: before 24.Q1.C5 (fixed in 24.Q1.C5)
  • Ericsson Site Controller 6610: before S24.Q2 (fixed in S24.Q2)

Published 2025-10-13. Last modified 2026-06-17.