First published: Tue Feb 16 2021(Updated: )
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. The login pages bruteforce detection is disabled by default.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mbconnectline Mbconnect24 | <=2.6.2 | |
Mbconnectline Mymbconnect24 | <=2.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2020-35565.
The severity of CVE-2020-35565 is critical with a score of 9.8.
Versions up to and including 2.6.2 of MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 are affected by CVE-2020-35565.
CVE-2020-35565 is a vulnerability in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 where the login pages bruteforce detection is disabled by default.
To fix CVE-2020-35565, it is recommended to enable the login page brute force detection in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 or apply the necessary security patches.