logo

Bridge or Backdoor? Critical 9.8 RCE Flaw Threatens Helmholz Industrial Networks

ID: 81023eb1-9e04-5986-8417-ac89636c323a

STIX ID: report--81023eb1-9e04-5986-8417-ac89636c323a

Feed Name: securityonline.info

Threat Score
78/100

Date Published: 2026-03-24

Date Updated: 2026-04-23

Author: Ddos

...
...

**Helmholz advisory:** Helmholz myREX24V2 and myREX24V2.virtual remote access gateways contain two serious pre-auth vulnerabilities—CVE-2026-32968 (RCE, CVSS 9.8) in the com_mb24sysapi module and CVE-2026-32969 (blind SQLi, CVSS 7.5) in the userinfo endpoint—affecting firmware versions 2.19.3 and earlier; administrators are urged to apply the released firmware updates immediately to prevent full system compromise and database disclosure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.