<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_mbconnectlinegmbh/10</id>
  <title>Most recent entries from csaf_mbconnectlinegmbh</title>
  <updated>2026-10-02T07:10:28.958482+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-044</id>
    <title>VDE-2026-044 — MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24</title>
    <updated>2026-07-20T13:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-044"/>
    <published>2026-05-27T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-068</id>
    <title>VDE-2026-068 — MB connect line: Authenticated unintended access to critical program parameters in mbCONNECT24/mymbCONNECT24</title>
    <updated>2026-06-23T11:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>There is a vulnerability in mbCONNECT24/mymbCONNECT24 that allows an authenticated remote attacker to access a hidden configuration method, that should not be accessible by any user, to modify critical program parameters.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-068"/>
    <published>2026-06-23T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-054</id>
    <title>VDE-2026-054 — MB connect line: Multiple vulnerabilities in mbNET/mbNET.rokey/mbNET.mini</title>
    <updated>2026-05-27T11:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Two command injection vulnerabilities have been discovered in MB connect line mbNET/mbNET.rokey/mbNET.mini.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-054"/>
    <published>2026-05-27T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-030</id>
    <title>VDE-2026-030 — MB connect line: Multiple Vulnerabilities in mbCONNECT24/mymbCONNECT24</title>
    <updated>2026-04-02T11:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24 that could allow RCE, SQLi or information leakage.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-030"/>
    <published>2026-04-02T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-024</id>
    <title>VDE-2026-024 — MB connect line: Multiple Vulnerabilities in mbCONNECT24/mymbCONNECT24</title>
    <updated>2026-03-23T12:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24 that could allow unauthenticated RCE or SQLi.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-024"/>
    <published>2026-03-23T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2024-068</id>
    <title>VDE-2024-068 — MB connect line: Multiple Vulnerabilities in MB connect line Products</title>
    <updated>2026-03-06T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Multiple vulnerabilities have been discovered in MB connect line products that could allow RCE or unauthorized file access.</p>
<p>CVE-2024-45272 affects the mbCONNECT24 and mymbCONNECT24 products.</p>
<p>CVE-2024-45273 affects the mbNET/mbNET.rokey, mbCONNECT24, mymbCONNECT24, mbNET HW1, and mbSPIDER products.</p>
<p>CVE-2024-45275 affects only the mbNET HW1 product.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2024-068"/>
    <published>2024-10-15T08:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2024-056</id>
    <title>VDE-2024-056 — MB connect line: Multiple Vulnerabilities in mbNET.mini Product</title>
    <updated>2025-08-27T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been discovered in MB connect line mbNET.mini product allowing for RCE or unauthorized file access.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2024-056"/>
    <published>2024-10-15T08:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2024-010</id>
    <title>VDE-2024-010 — Vulnerabilities in mbCONNECT24/mymbCONNECT24</title>
    <updated>2025-08-27T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The data24 service that is bundled with every installation of mbCONNECT24/mymbCONNECT24 has two
serious flaws in core components. These combined can lead to a complete loss of confidentiality, integrity
and availability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2024-010"/>
    <published>2025-03-18T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-065</id>
    <title>VDE-2025-065 — MB connect line: Sandbox escape in mbNET's LUA interpreter</title>
    <updated>2025-07-31T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An authenticated remote attacker can exploit an undocumented method to escape the LUA sandbox in mbNET devices, enabling the execution of arbitrary operating system commands and leading to full system compromise.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-065"/>
    <published>2025-07-31T10:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-058</id>
    <title>VDE-2025-058 — MB connect line: Multiple vulnerabilities in mbNET.mini</title>
    <updated>2025-07-21T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities in all mbNET.mini devices with firmware &lt;= 2.3.2 that allow an attacker to gain full control over the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-058"/>
    <published>2025-07-21T10:00:00+00:00</published>
  </entry>
</feed>
