Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2020-12527
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Improper Access Validation in products of MB connect line and Helmholz
Source: NVD (National Vulnerability Database)
Vulnerability Description
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2. Improper access validation allows a logged in user to shutdown or reboot devices in his account without having corresponding permissions.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
特权管理不恰当
Source: NVD (National Vulnerability Database)
Vulnerability Title
MB CONNECT LINE mymbCONNECT24 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
MB CONNECT LINE mymbCONNECT24是德国MB CONNECT LINE公司的一款适用于虚拟环境的内部远程维护解决方案。 MB CONNECT LINE mymbCONNECT24 V2.6.2 版本及之前版本存在安全漏洞,该漏洞源于不正确的使用访问验证允许登录的用户与他不应该访问的帐户中的设备交互。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
MB connect linemymbCONNECT24 2.6.2 ~ 2.11.2 -
MB connect linembCONNECT24 2.6.2 ~ 2.11.2 -
HelmholzmyREX24 2 ~ 2.11.2 -
HelmholzmyREX24.virtual 2.11.2 -
II. Public POCs for CVE-2020-12527
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2020-12527
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2020-12527

No comments yet


Leave a comment