Description
Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual in versions <=2.13.3 allow an authorized remote attacker with low privileges to view a limited amount of another accounts contact information.
Published: 2023-06-06
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-23986 Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual in versions <=2.13.3 allow an authorized remote attacker with low privileges to view a limited amount of another accounts contact information.
History

Tue, 07 Jan 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 02 Oct 2024 06:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200

Wed, 02 Oct 2024 05:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-863

Subscriptions

Mbconnectline Mbconnect24 Mymbconnect24
cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2025-01-07T19:19:11.622Z

Reserved: 2023-03-31T13:00:50.757Z

Link: CVE-2023-1779

cve-icon Vulnrichment

Updated: 2024-08-02T05:57:25.020Z

cve-icon NVD

Status : Modified

Published: 2023-06-06T11:15:09.913

Modified: 2024-11-21T07:39:53.470

Link: CVE-2023-1779

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses