CVE-2020-12528

Publication date

2021-03-02 21:15:25

Family

CERTVDE

State

PUBLISHED

Description

An issue was discovered in MB connect line mymbCONNECT24 and mbCONNECT24 software in all versions through V2.6.2. Improper use of access validation allows a logged in user to kill web2go sessions in the account he should not have access to.