CVE-2026-40812
Unauthenticated SQLi in getLiveValues function
An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getLiveValues functions sn parameter due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Produtos afetados
Helmholz · myREX24V2Helmholz · myREX24V2.virtualMB connect line · mbCONNECT24MB connect line · mymbCONNECT24Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →