In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cannot be exploited by users with lower privilege roles.
Metrics
Affected Vendors & Products
References
History
Thu, 07 Nov 2024 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 07 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 05 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
2n
2n access Commander |
|
CPEs | cpe:2.3:a:2n:access_commander:*:*:*:*:*:*:*:* | |
Vendors & Products |
2n
2n access Commander |
|
Metrics |
ssvc
|
Tue, 05 Nov 2024 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker to write files on the filesystem to achieve arbitrary remote code execution. | In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cannot be exploited by users with lower privilege roles. |
Tue, 05 Nov 2024 09:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker to write files on the filesystem to achieve arbitrary remote code execution. | |
Weaknesses | CWE-22 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Axis
Published: 2024-11-05T09:08:56.300Z
Updated: 2024-11-07T11:54:17.366Z
Reserved: 2024-09-23T16:37:50.255Z
Link: CVE-2024-47253
Vulnrichment
Updated: 2024-11-05T14:54:31.188Z
NVD
Status : Modified
Published: 2024-11-05T10:20:03.973
Modified: 2024-11-07T12:15:24.630
Link: CVE-2024-47253
Redhat
No data.