CVE-2020-10382: High severity mbconnectline mymbconnect24 vulnerability
An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. There is an authenticated remote code execution in the backup-scheduler.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-10382.
What is the severity of CVE-2020-10382?
The severity of CVE-2020-10382 is high with a severity value of 8.8.
Which software versions are affected by CVE-2020-10382?
All versions of the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software up to version 2.5.0 are affected by CVE-2020-10382.
What is the nature of the vulnerability in CVE-2020-10382?
CVE-2020-10382 is an authenticated remote code execution vulnerability in the backup-scheduler component of the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software.
How can I fix CVE-2020-10382?
To fix CVE-2020-10382, it is recommended to update the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software to version 2.5.1 or higher. Additionally, follow any security advice provided by the software vendor.