CVE-2023-1779
published 2023-06-06CVE-2023-1779: Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and…
PriorityP421medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
EPSS
0.52%
39.9th percentile
Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual in versions <=2.13.3 allow an authorized remote attacker with low privileges to view a limited amount of another accounts contact information.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| helmholz | myrex24 | <= 2.13.3 | — |
| helmholz | myrex24.virtual | <= 2.13.3 | — |
| mb_connect_line | mbconnect24 | 1.0.0 – 2.13.3 | — |
| mb_connect_line | mymbconnect24 | 1.0.0 – 2.13.3 | — |
| mbconnectline | mbconnect24 | <= 2.13.3 | — |
| mbconnectline | mymbconnect24 | <= 2.13.3 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-06-06
Published