CVE-2024-5672: Helmholz Rex 100

High severity, CVSS 7.2. EPSS: 1.2% chance of exploitation in the next 30 days.

A high privileged remote attacker can execute arbitrary system commands via GET requests due to improper neutralization of special elements used in an OS command.

Affected products

  • Helmholz Rex 100: up to and including 2.2.11
  • Helmholz Rex 100 Firmware: up to and including 2.2.11
  • Red Lion Europe Mbnet.mini: up to and including 2.2.11
  • Redlion Mbnet Mini: up to and including 2.2.11

Published 2024-07-03. Last modified 2026-06-17.