Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2023-041
Oct. 16, 2023, 10:38 AM
In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged attacker to gain …
VDE-2023-012
Aug. 17, 2023, 2:00 PM
A stored XXS vulnerability has been found in mbNET and mbNET/.rokey in all versions before 7.3.2.
VDE-2024-042
Aug. 17, 2023, 2:00 PM
Several Red Lion Europe products are vulnerable to a possible race condition vulnerability in OpenSSH named "regreSSHion".
VDE-2023-002
May 14, 2025, 3:00 PM
Two vulnerabilites have been discovered in mbCONNECT24 and mbCONNECT24 in all versions through 2.13.3.
VDE-2022-011
Sept. 7, 2022, 2:50 PM
An issue was discovered in the mymbCONNECT24 and mbCONNECT24 software in all versions through V2.11.2.
VDE-2021-030
June 6, 2025, 9:00 AM
Two issues have been discovered in mymbCONNECT24 and mbCONNECT24 in all versionsincluding V2.8.0. Updated affected versions (and solution) due to incomplete fixes in previous versions
VDE-2021-003
Sept. 7, 2022, 12:46 PM
Multiple vulnerabilities have been found in mymbCONNECT24 and mbCONNECT24. Update A, 2022-09-07: Affected Products: updated affected versions due to incomplete fixes of some CVEs. See Solution for details. Solution: updated …
VDE-2021-037
May 14, 2025, 2:28 PM
An issue was discovered in the mymbCONNECT24 and mbCONNECT24 software in all versions through V2.9.0.