Security Advisory
CVE-2018-10285
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Ericsson-LG iPECS NMS A.1Ac web application uses incorrect access control mechanisms. Since the app does not use any sort of session ID, an attacker might bypass authentication.