PublicCVE

CVE-2024-13416

MEDIUM4.3JSON exportCreate alert

Description

Using API in the 2N OS device, authorized user can enable logging, which discloses valid authentication tokens in system log. 2N has released an updated version 2.46 of 2N OS, where this vulnerability is mitigated. It is recommended that all customers update their devices to the latest 2N OS.

CVSS breakdown

CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None

Affected products

  • 2N / 2N OSAll 2N products running 2N OS 2.45 and prior – All 2N products running 2N OS 2.45 and prior