Loading
Ericsson Network Manager before 23.2 mishandles Access Control and thus unauthenticated low-privilege users can access the NCM application.
Use Ericsson vendor hub and Network Manager product page to widen CVE-2023-39909 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-25007, CVE-2025-27258 and CVE-2022-46408 for nearby disclosures in the same product family. Additional editorial context is available in Why “Low” and “Medium” CVEs Still Breach Networks.