Vulnerabilities > Helmholz > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-10-15 CVE-2024-45274 Missing Authentication for Critical Function vulnerability in multiple products
An unauthenticated remote attacker can execute OS commands via UDP on the device due to missing authentication.
network
low complexity
mbconnectline helmholz CWE-306
critical
9.8
2024-10-15 CVE-2024-45275 Use of Hard-coded Credentials vulnerability in multiple products
The devices contain two hard coded user accounts with hardcoded passwords that allow an unauthenticated remote attacker for full control of the affected devices.
network
low complexity
mbconnectline helmholz CWE-798
critical
9.8