An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.6.1. There is a local privilege escalation from the www-data account to the root account.
                
            References
                    | Link | Resource | 
|---|---|
| https://mbconnectline.com/security-advice/ | Vendor Advisory | 
| https://cert.vde.com/de-de/advisories/vde-2021-003 | Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Information
                Published : 2020-04-14 11:15
Updated : 2021-02-19 09:40
NVD link : CVE-2020-10384
Mitre link : CVE-2020-10384
JSON object : View
CWE
                
                    
                        
                        CWE-269
                        
            Improper Privilege Management
Products Affected
                mbconnectline
- mymbconnect24
 - mbconnect24
 


