PT-2024-9226 · 2N · 2N Access Commander

Published

2024-09-23

·

Updated

2024-11-07

·

CVE-2024-47254

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: 2N Access Commander versions 3.1.1.2 and prior
Description: The issue is related to an Insufficient Verification of Data Authenticity, which could allow an attacker to escalate their privileges and gain root access to the system. This vulnerability may be exploited by a remote attacker to gain unauthorized system access.
Recommendations: For 2N Access Commander versions 3.1.1.2 and prior, patch the system immediately to prevent exploitation. Additionally, monitor the system for signs of compromise to minimize potential damage. As a temporary workaround, consider restricting access to sensitive areas of the system until a patch is applied.

Fix

Insufficient Verification of Data Authenticity

Weakness Enumeration

Related Identifiers

BDU:2024-10914
CVE-2024-47254

Affected Products

2N Access Commander