ZeroHour

CVE-2024-45274

CVSS 3.1
9.8 critical
EPSS
2%p73
Published
()
Modified
Description

An unauthenticated remote attacker can execute OS commands via UDP on the device due to missing authentication.

Vendors
mbconnectlinehelmholz
Products
mbnet.mini firmware, rex 100 firmware
Weakness
CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news