In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged attacker to gain read access to limited, non-critical device information in his account he should not have access to.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2023-10-16T08:40:13.064Z
Updated: 2024-09-16T18:17:07.881Z
Reserved: 2023-09-08T07:54:38.764Z
Link: CVE-2023-4834
Vulnrichment
Updated: 2024-08-02T07:38:00.778Z
NVD
Status : Modified
Published: 2023-10-16T09:15:11.830
Modified: 2024-11-21T08:36:04.223
Link: CVE-2023-4834
Redhat
No data.