CVE-2020-35565: Critical severity mbconnectline mymbconnect24 vulnerability
Published Feb 16, 2021
·Updated
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. The login pages bruteforce detection is disabled by default.
Affected Software
2 affected components
Mbconnectline Mbconnect24<=2.6.2
Mbconnectline Mymbconnect24<=2.6.2
Event History
Feb 16, 2021
CVE Published
via MITRE·03:47 PM
Data Sourced
via MITRE·03:47 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2020-35565.
2
What is the severity of CVE-2020-35565?
The severity of CVE-2020-35565 is critical with a score of 9.8.
3
What software versions are affected by CVE-2020-35565?
Versions up to and including 2.6.2 of MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 are affected by CVE-2020-35565.
4
What is the description of CVE-2020-35565?
CVE-2020-35565 is a vulnerability in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 where the login pages bruteforce detection is disabled by default.
5
How can I fix CVE-2020-35565?
To fix CVE-2020-35565, it is recommended to enable the login page brute force detection in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 or apply the necessary security patches.