Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mbconnectline mbconnect24 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2021-34575
In MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by checking what kind of response the server sends.
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
7.5
CVSSv3
CVE-2020-35558
An issue exists in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.11.2. There is an SSRF in the in the MySQL access check, allowing an malicious user to scan for open ports and gain some information about possible credent...
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
4.3
CVSSv3
CVE-2020-35568
An issue exists in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2. An incomplete filter applied to a database response allows an authenticated malicious user to gain non-public information about other users and ...
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
5.3
CVSSv3
CVE-2020-35570
An issue exists in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.11.2. An unauthenticated attacker is able to access files (that should have been restricted) via forceful browsing.
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
6.5
CVSSv3
CVE-2020-35557
An issue in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2 allows a logged in user to see devices in the account he should not have access to due to improper use of access validation.
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
5.3
CVSSv3
CVE-2020-35561
An issue exists MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2. There is an SSRF in the HA module allowing an unauthenticated malicious user to scan for open ports.
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
5.3
CVSSv3
CVE-2020-35566
An issue exists in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2. An attacker can read arbitrary JSON files via Local File Inclusion.
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
5.3
CVSSv3
CVE-2022-22520
A remote, unauthenticated attacker can enumerate valid users by sending specific requests to the webservice of MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2.
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
4.3
CVSSv3
CVE-2021-34574
In MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2 an authenticated attacker can change the password of his account into a new password that violates the password policy by intercepting and modifying the request ...
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
Helmholz Myrex24.virtual
Helmholz Myrex24
4.3
CVSSv3
CVE-2023-4834
In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged malicious user to gain read access to limited, non-critical device information ...
Helmholz Myrex24
Helmholz Myrex24.virtual
Mbconnectline Mbconnect24
Mbconnectline Mymbconnect24
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »