CVE-2021-34575
7.5HIGHIn MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by checking what kind of response the server sends.
Опубликовано: 8/2/2021Обновлено: 11/21/2024
Описание
In MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by checking what kind of response the server sends.
ИИ-АнализНа базе ИИ
Затронутые продукты
mbconnectlinembconnect24
mbconnectlinemymbconnect24
Ссылки
- https://cert.vde.com/de-de/advisories/vde-2021-030Third Party Advisory
- https://cert.vde.com/de-de/advisories/vde-2021-030Third Party Advisory