Vulnerabilidades en MB Connect Line

83 resultados
Análisis Vexday

MB Connect Line apresenta um perfil de risco baixo com apenas 2 vulnerabilidades no histórico e nenhuma sob exploração ativa ou classificada como crítica. A fraqueza dominante identificada (CWE-639 - autorização inadequada) é estrutural, mas o fato de não haver divulgações recentes reduz a urgência de remediação imediata.

CVE-2026-40819HIGHUnauthenticated SQLi in sync_data24 taskEPSS 0.3%CVE-2026-40814HIGHUnauthenticated SQLi in _mb24confi_getTagAlarm functionEPSS 0.3%CVE-2026-40811HIGHUnauthenticated SQLi in ssoabstractserviceEPSS 0.3%CVE-2026-40818HIGHUnauthenticated SQLi in _mb24confi_getDevice function functionEPSS 0.3%CVE-2026-40813HIGHUnauthenticated SQLi in getLiveValuesEPSS 0.3%CVE-2026-40812HIGHUnauthenticated SQLi in getLiveValues functionEPSS 0.3%CVE-2026-40816HIGHUnauthenticated SQLi in _mb24confi_getTagAlarm functionEPSS 0.3%CVE-2026-10521HIGHAuthenticated unintended access to critical program parametersEPSS 0.3%CVE-2024-45271HIGHMB connect line/Helmholz: Remote code execution due to improper input validationEPSS 0.3%CVE-2026-40828HIGHAuthenticated SQLi in DeleteSysLogEntry functionEPSS 0.3%CVE-2026-40829HIGHAuthenticated SQLi in UpdateParam functionEPSS 0.3%CVE-2026-40830HIGHAuthenticated SQLi in UpdateParam functionEPSS 0.3%CVE-2026-40827HIGHAuthenticated SQLi in _RemoveRequest functionEPSS 0.3%CVE-2026-40821MEDIUMAuthenticated SQLi in getAccountByID functionEPSS 0.3%CVE-2026-40826MEDIUMAuthenticated SQLi in dsgvo_contracts viewEPSS 0.3%CVE-2026-40822MEDIUMAuthenticated SQLi in DevSerialReset functionEPSS 0.3%CVE-2025-41681MEDIUMPersistent Cross-Site Scripting via POST Requests Due to Improper Neutralization of InputEPSS 0.3%CVE-2026-33617MEDIUMMB connect line mbCONNECT24 vulnerable to an unauthenticated information disclosure in the data24 EndpointEPSS 0.3%CVE-2026-40840HIGHAuthenticated SQLi in VerifyCreateLicences functionEPSS 0.3%CVE-2026-40849HIGHAuthenticated SQLi in user_alarmprofile viewEPSS 0.3%