LenelS2 NetBox access control and event monitoring system was discovered to contain an unauthenticated RCE in versions prior to and including 5.6.1, which allows an attacker to execute malicious commands with elevated permissions.
Metrics
Affected Vendors & Products
Fixes
Solution
LenelS2 advises customers to apply to the updated version of NetBox 5.6.2 or newer via the LenelS2 Partner Center. Please get in touch with your support channel partner for instructions.
Workaround
No workaround given by the vendor.
References
History
Mon, 14 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: Carrier
Published:
Updated: 2024-08-01T19:11:53.525Z
Reserved: 2024-03-13T13:55:51.729Z
Link: CVE-2024-2421

Updated: 2024-08-01T19:11:53.525Z

Status : Awaiting Analysis
Published: 2024-05-30T18:15:09.230
Modified: 2024-11-21T09:09:43.090
Link: CVE-2024-2421

No data.

No data.