<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 13:44:13 +0000</lastBuildDate>
    <item>
      <title>cnvd-2021-17237</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-17237</link>
      <description>cnvd-2021-17237</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-17237</guid>
    </item>
    <item>
      <title>EUVD-2026-167294</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-167294</link>
      <description>EUVD-2026-167294</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-167294</guid>
    </item>
    <item>
      <title>fkie_cve-2020-35561</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-35561</link>
      <description>&lt;p&gt;An issue was discovered MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2. There is an SSRF in the HA module allowing an unauthenticated attacker to scan for open ports.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2. There is an SSRF in the HA module allowing an unauthenticated attacker to scan for open ports.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-35561</guid>
    </item>
    <item>
      <title>GHSA-44gj-57cg-mxj8</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-44gj-57cg-mxj8</link>
      <description>&lt;p&gt;An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an SSRF in the HA module allowing an unauthenticated attacker to scan for open ports.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an SSRF in the HA module allowing an unauthenticated attacker to scan for open ports.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-44gj-57cg-mxj8</guid>
    </item>
    <item>
      <title>gsd-2020-35561</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-35561</link>
      <description>gsd-2020-35561</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-35561</guid>
    </item>
    <item>
      <title>ICSA-21-061-03 — MB connect line mbCONNECT24, mymbCONNECT24</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-061-03</link>
      <description>&lt;p&gt;Improper access validation may allow a logged-in user to see devices in an account to which they should not have access.CVE-2020-12527 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). Improper access validation may allow a logged-in user to kill web2go sessions in an account to which they should not have access.CVE-2020-12528 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). There is a SSRF issue in the LDAP access check, allowing an attacker to scan for open ports.CVE-2020-12529 has been assigned to this vulnerability. A CVSS v3 base score of 5.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N). There is an XSS issue in the redirect.php, allowing an attacker to inject code via a get parameter.CVE-2020-12530 has been assigned to this vulnerability. A CVSS v3 base score of 4.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N). Improper access validation may allow a logged-in user to see devices in the account to which they should not have access.CVE-2020-35557 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). There is a SSRF issue in the MySQL access check, allowing an attacker to scan for open p…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper access validation may allow a logged-in user to see devices in an account to which they should not have access.CVE-2020-12527 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). Improper access validation may allow a logged-in user to kill web2go sessions in an account to which they should not have access.CVE-2020-12528 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). There is a SSRF issue in the LDAP access check, allowing an attacker to scan for open ports.CVE-2020-12529 has been assigned to this vulnerability. A CVSS v3 base score of 5.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N). There is an XSS issue in the redirect.php, allowing an attacker to inject code via a get parameter.CVE-2020-12530 has been assigned to this vulnerability. A CVSS v3 base score of 4.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N). Improper access validation may allow a logged-in user to see devices in the account to which they should not have access.CVE-2020-35557 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). There is a SSRF issue in the MySQL access check, allowing an attacker to scan for open p…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-061-03</guid>
    </item>
    <item>
      <title>VDE-2021-003 — MB connect line: Multiple vulnerabilites in mymbCONNECT24 and mbCONNECT24 (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2021-003</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been found in mymbCONNECT24 and mbCONNECT24.
Update A, 2022-09-07:&lt;/p&gt;
&lt;p&gt;Affected Products: updated affected versions due to incomplete fixes of some CVEs. See Solution for details.
Solution: updated version information.
Solution: Added Fix for CVE-2020-35561.
Solution: Added MFA remark for CVE-2020-35565.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been found in mymbCONNECT24 and mbCONNECT24.
Update A, 2022-09-07:&lt;/p&gt;
&lt;p&gt;Affected Products: updated affected versions due to incomplete fixes of some CVEs. See Solution for details.
Solution: updated version information.
Solution: Added Fix for CVE-2020-35561.
Solution: Added MFA remark for CVE-2020-35565.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2021-003</guid>
    </item>
    <item>
      <title>VDE-2022-039 — Helmholz: Multiple vulnerabilites in myREX24 and myREX24.virtual</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-039</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been found in myREX24 and myREX24.virtual.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been found in myREX24 and myREX24.virtual.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-039</guid>
    </item>
  </channel>
</rss>
