VDE-2023-008
Last update
15.05.2023 14:06
Published at
15.05.2023 14:06
Vendor(s)
Helmholz GmbH & Co. KG
External ID
VDE-2023-008
CSAF Document
Summary
Two vulnerabilites have been discovered in myREX24 and myREX24.virtual in all versions through 2.13.3.
Impact
Please consult the CVE Entries.
Affected Product(s)
Model no. | Product name | Affected versions |
---|---|---|
myREX24 <=2.13.3 | myREX24 <=2.13.3 | |
myREX24.virtual <=2.13.3 | myREX24.virtual <=2.13.3 |
Vulnerabilities
Expand / Collapse allMitigation
Mitigation for CVE-2023-0985:
If you have MFA enabled on the admin user, the password will still be set, but the attacker will be unable to login as the MFA is still in place.
Remediation
Update to latest Version: 2.13.4
Revision History
Version | Date | Summary |
---|---|---|
1 | 15.05.2023 14:06 | Initial revision. |