{"id":"CVE-2025-59177","title":"Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages.","summary":"Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages.","severity":"none","cwe":["CWE-209"],"published":"2026-07-27","updated":"2026-09-29","sourceUpdated":"2026-09-29T19:10:00.160","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-59177","references":[{"url":"https://www.ericsson.com/en/about-us/security/psirt/security-bulletin-pcc-july-2026","label":"85b1779b-6ecd-4f52-bcc5-73eac4659dcf"}],"tags":["nvd"],"epss":0.00231,"epssPercentile":0.12539,"ingestedAt":"2026-09-29T19:44:04.111Z","slug":"CVE-2025-59177","body":"## Overview\n\nEricsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}