ZeroHour

CVE-2024-45275

CVSS 3.1
9.8 critical
EPSS
<1%p54
Published
()
Modified
Description

The devices contain two hard coded user accounts with hardcoded passwords that allow an unauthenticated remote attacker for full control of the affected devices.

Vendors
mbconnectlinehelmholz
Products
mbnet.mini firmware, rex 100 firmware
Weakness
CWE-798
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news