Vulnerabilities > Helmholz > REX 100 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-15 CVE-2024-45271 An unauthenticated local attacker can gain admin privileges by deploying a config file due to improper input validation.
local
low complexity
mbconnectline helmholz
7.8
2024-10-15 CVE-2024-45273 Inadequate Encryption Strength vulnerability in multiple products
An unauthenticated local attacker can decrypt the devices config file and therefore compromise the device due to a weak implementation of the encryption used.
local
low complexity
mbconnectline helmholz CWE-326
7.8
2024-10-15 CVE-2024-45276 Missing Authentication for Critical Function vulnerability in multiple products
An unauthenticated remote attacker can get read access to files in the "/tmp" directory due to missing authentication.
network
low complexity
mbconnectline helmholz CWE-306
7.5