Logging Vulnerability in 2N OS Device Affects Authorized Users
CVE-2024-13416

4.3MEDIUM

Key Information:

Vendor

2n

Status
Vendor
CVE Published:
6 February 2025

What is CVE-2024-13416?

A vulnerability in the 2N OS device allows authorized users to enable logging features improperly, which can result in the disclosure of valid authentication tokens within the system logs. This exposure may lead to unauthorized access and potential misuse of user credentials, posing a significant risk to the security of the device and its users.

Affected Version(s)

2N OS All 2N products running 2N OS 2.45 and prior

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-13416 : Logging Vulnerability in 2N OS Device Affects Authorized Users