← Back to CVE List

CVE-2021-28485

Published: 2023-09-14T15:15Z
Last Modified: 2024-11-21T05:59Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In Ericsson Mobile Switching Center Server (MSC-S) before IS 3.1 CP22, the SIS web application allows relative path traversal via a specific parameter in the https request after authentication, which allows access to files on the system that are not intended to be accessible via the web application. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt