CVE-2025-59177: Ericsson Packet Core Controller Pcc
Medium severity, CVSS 6.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages.
Affected products
- Ericsson Ericsson Packet Core Controller Pcc: before 1.39 (fixed in 1.39)
Published 2026-07-27. Last modified 2026-09-29.