- EPSS 0.02%
- Published 06.02.2025 20:15:39
- Last modified 21.02.2025 13:15:11
Successful exploitation of this vulnerability could allow an attacker (who needs to have Admin access privileges) to read hardcoded AES passphrase, which may be used for decryption of certain data within backup files of 2N Access Commander version 1....
CVE-2024-47258
- EPSS 0.02%
- Published 06.02.2025 20:15:39
- Last modified 04.09.2025 10:42:26
2N Access Commander version 2.1 and prior is vulnerable in default settings to Man In The Middle attack due to not verifying certificates of 2N edge devices. 2N has currently released an updated version 3.3 of 2N Access Commander, with added Ce...
CVE-2024-47255
- EPSS 0.01%
- Published 05.11.2024 10:20:05
- Last modified 04.09.2025 10:42:25
In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which could allow for arbitrary code execution with root permissions.
CVE-2024-47254
- EPSS 0.11%
- Published 05.11.2024 10:20:04
- Last modified 04.09.2025 10:42:25
In 2N Access Commander versions 3.1.1.2 and prior, an Insufficient Verification of Data Authenticity vulnerability could allow an attacker to escalate their privileges and gain root access to the system.
CVE-2024-47253
- EPSS 0.87%
- Published 05.11.2024 10:20:03
- Last modified 07.11.2024 12:15:24
In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cann...