Security Advisory

CVE-2020-12528

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-02 21:15:25
Last updated 2024-09-16 20:37:38
Assigner CERTVDE
State PUBLISHED

Description

An issue was discovered in MB connect line mymbCONNECT24 and mbCONNECT24 software in all versions through V2.6.2. Improper use of access validation allows a logged in user to kill web2go sessions in the account he should not have access to.