Vulnerabilities > Mbconnectline

DATE CVE VULNERABILITY TITLE RISK
2021-03-02 CVE-2020-12529 Server-Side Request Forgery (SSRF) vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB connect line mymbCONNECT24 and mbCONNECT24 software in all versions through V2.6.2 There is a SSRF in the LDAP access check, allowing an attacker to scan for open ports.
network
low complexity
mbconnectline CWE-918
5.0
2021-03-02 CVE-2020-12528 Improper Privilege Management vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB connect line mymbCONNECT24 and mbCONNECT24 software in all versions through V2.6.2.
network
low complexity
mbconnectline CWE-269
4.0
2021-03-02 CVE-2020-12527 Improper Privilege Management vulnerability in multiple products
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2.
network
low complexity
mbconnectline helmholz CWE-269
6.5
2021-02-16 CVE-2020-35570 Forced Browsing vulnerability in multiple products
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual through 2.11.2.
network
low complexity
mbconnectline helmholz CWE-425
5.3
2021-02-16 CVE-2020-35569 Cross-site Scripting vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2.
4.3
2021-02-16 CVE-2020-35568 Information Exposure vulnerability in multiple products
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2.
network
low complexity
mbconnectline helmholz CWE-200
4.3
2021-02-16 CVE-2020-35567 Use of Hard-coded Credentials vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2.
local
low complexity
mbconnectline CWE-798
4.6
2021-02-16 CVE-2020-35566 Use of Incorrectly-Resolved Name or Reference vulnerability in multiple products
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2.
network
low complexity
mbconnectline helmholz CWE-706
5.3
2021-02-16 CVE-2020-35565 Improper Restriction of Excessive Authentication Attempts vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2.
network
low complexity
mbconnectline CWE-307
5.0
2021-02-16 CVE-2020-35564 Injection vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2.
network
low complexity
mbconnectline CWE-74
5.0