CVE-2025-59180
Use of Hard-coded Credentials Vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a hardcoded credential vulnerability in the alarm system. An attacker with access to the cluster with knowledge of the hardcoded credential can read alarm and alert information.
| CWE | CWE-798 |
| Vendor | ericsson |
| Product | packet core controller (pcc) |
| Published | Jul 27, 2026 |
| Last Updated | Jul 27, 2026 |
Stay Ahead of the Next One
Get instant alerts for ericsson packet core controller (pcc)
Be the first to know when new unknown vulnerabilities affecting ericsson packet core controller (pcc) are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Ericsson / Packet Core Controller (PCC)
0 < 1.38
References
Credits
Spark NZ Radu Balaci and Meghna Patel from Bell Mobility (Canada)