CVE-2020-35564

An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an outdated and unused component allowing for malicious user input of active code.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mbconnectline:mbconnect24:*:*:*:*:*:*:*:*
cpe:2.3:a:mbconnectline:mymbconnect24:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-02-16 16:15

Updated : 2024-02-28 18:08


NVD link : CVE-2020-35564

Mitre link : CVE-2020-35564

CVE.ORG link : CVE-2020-35564


JSON object : View

Products Affected

mbconnectline

  • mymbconnect24
  • mbconnect24
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')