CVE-2024-45274

An unauthenticated remote attacker can execute OS commands via UDP on the device due to missing authentication.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:mbconnectline:mbnet.mini_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mbconnectline:mbnet.mini:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:helmholz:rex_100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:helmholz:rex_100:-:*:*:*:*:*:*:*

History

03 Nov 2025, 20:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2025/Jul/38 -

Information

Published : 2024-10-15 11:15

Updated : 2025-11-03 20:16


NVD link : CVE-2024-45274

Mitre link : CVE-2024-45274

CVE.ORG link : CVE-2024-45274


JSON object : View

Products Affected

helmholz

  • rex_100
  • rex_100_firmware

mbconnectline

  • mbnet.mini_firmware
  • mbnet.mini
CWE
CWE-306

Missing Authentication for Critical Function