Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2020-23282
Disclosure Date: July 21, 2021 (last updated February 23, 2025)
SQL injection in Logon Page in MV's mConnect application, v02.001.00, allows an attacker to use a non existing user with a generic password to connect to the application and get access to unauthorized information.
0
Attacker Value
Unknown
CVE-2020-23283
Disclosure Date: July 21, 2021 (last updated February 23, 2025)
Information disclosure in Logon Page in MV's mConnect application v02.001.00 allows an attacker to know valid users from the application's database via brute force.
0