Vulnerabilidades en 2N
7 resultadosAnálisis Vexday
A 2N possui 7 vulnerabilidades registradas na base, nenhuma delas em exploração ativa conhecida ou classificada como crítica. A fraqueza dominante é traversal de diretório (CWE-22), padrão em produtos de acesso/comunicação. Com nenhuma publicação nos últimos 90 dias, o risco atual é baixo e estável, sem indicativos de atividade ofensiva em curso.
CVE-2024-47253HIGHIn 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to EPSS 1.0%CVE-2024-13416MEDIUMUsing API in the 2N OS device, authorized user can enable logging, which discloses valid authentication tokens in system log.
2N has relEPSS 0.4%CVE-2024-47254MEDIUMIn 2N Access Commander versions 3.1.1.2 and prior, an Insufficient
Verification of Data Authenticity vulnerability could allow an attacker EPSS 0.4%CVE-2024-13417MEDIUMSpecifically crafted payloads sent to the RFID reader could cause DoS of RFID reader. After the device is restarted, it gets back to fully wEPSS 0.2%CVE-2024-47256MEDIUMSuccessful exploitation of this vulnerability could allow an attacker (who needs to have Admin access privileges) to read hardcoded AES passEPSS 0.2%CVE-2024-47258HIGH2N Access Commander version 2.1 and prior is vulnerable in default settings to Man In The Middle attack due to not verifying certificates ofEPSS 0.1%CVE-2024-47255MEDIUMIn 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which could allow for arbitrEPSS 0.1%