Helmholz REX200/250是Helmholz公司的一款无线路由器。 Helmholz REX200/250 5.1.11之前版本存在安全漏洞,该漏洞源于未经身份验证的远程攻击者可以对远程服务门户的凭据进行暴力攻击,从而导致连接丢失。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| MB connect line | mbCONNECT24 | 0.0.0 ~ 2.16.2 | - |
|
| MB connect line | mymbCONNECT24 | 0.0.0 ~ 2.16.2 | - |
|
| Helmholz | myREX24 V2 | 0.0.0 ~ 2.16.2 | - |
|
| Helmholz | myREX24.virtual | 0.0.0 ~ 2.16.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-45274 | 9.8 CRITICAL | MB connect line/Helmholz: Remote code execution via confnet service |
| CVE-2024-45275 | 9.8 CRITICAL | MB connect line/Helmholz: Hardcoded user accounts with hard-coded passwords |
| CVE-2024-45273 | 8.4 HIGH | MB connect line/Helmholz: Weak encryption of configuration file |
| CVE-2024-45271 | 8.4 HIGH | MB connect line/Helmholz: Remote code execution due to improper input validation |
| CVE-2024-45276 | 7.5 HIGH | MB connect line/Helmholz: tmp directory exposed via webservice |
No comments yet