Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual in versions <=2.13.3 allow an authorized remote attacker with low privileges to view a limited amount of another accounts contact information.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2023-008/ |
|
History
Tue, 07 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 02 Oct 2024 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 |
Wed, 02 Oct 2024 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 |
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-01-07T19:19:11.622Z
Reserved: 2023-03-31T13:00:50.757Z
Link: CVE-2023-1779
Updated: 2024-08-02T05:57:25.020Z
Status : Modified
Published: 2023-06-06T11:15:09.913
Modified: 2024-11-21T07:39:53.470
Link: CVE-2023-1779
No data.