LenelS2 NetBox access control and event monitoring system was discovered to contain an authenticated RCE in versions prior to and including 5.6.1, which allows an attacker to execute malicious commands.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-27373 | LenelS2 NetBox access control and event monitoring system was discovered to contain an authenticated RCE in versions prior to and including 5.6.1, which allows an attacker to execute malicious commands. |
Fixes
Solution
LenelS2 advises customers to apply to the updated version of NetBox 5.6.2 or newer via the LenelS2 Partner Center. Please get in touch with your support channel partner for instructions.
Workaround
No workaround given by the vendor.
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: Carrier
Published:
Updated: 2024-08-01T19:11:53.469Z
Reserved: 2024-03-13T13:55:55.979Z
Link: CVE-2024-2422
Updated: 2024-08-01T19:11:53.469Z
Status : Awaiting Analysis
Published: 2024-05-30T18:15:09.367
Modified: 2024-11-21T09:09:43.220
Link: CVE-2024-2422
No data.
OpenCVE Enrichment
No data.
EUVD