Description
In MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by checking what kind of response the server sends.
No analysis available yet.
Remediation
Vendor Solution
Update to version 2.9.0
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21225 | In MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by checking what kind of response the server sends. |
References
| Link | Providers |
|---|---|
| https://cert.vde.com/de-de/advisories/vde-2021-030 |
|
History
No history.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-09-16T22:46:43.672Z
Reserved: 2021-06-10T00:00:00.000Z
Link: CVE-2021-34575
No data.
Status : Modified
Published: 2021-08-02T11:15:11.417
Modified: 2024-11-21T06:10:44.050
Link: CVE-2021-34575
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD