Ericsson Catalog Manager and Ericsson Order Care APIs do not have authentication enabled by default. Authentication checks can be configured to remediate the information disclosure issue.
https://www.ericsson.com/en/about-us/security/psirt/cve-2024-25011