CVE-2024-27708: Airc Mynet

Critical severity, CVSS 9.6. EPSS: 0.6% chance of exploitation in the next 30 days.

Iframe injection vulnerability in airc.pt/solucoes-servicos.solucoes MyNET v.26.06 and before allows a remote attacker to execute arbitrary code via the src parameter.

Affected products

  • Airc Mynet: up to and including 26.06

Published 2025-12-22. Last modified 2026-09-26.