Man In The Middle Vulnerability in 2N Access Commander Software
CVE-2024-47258

8.1HIGH

Key Information:

Vendor

2n

Vendor
CVE Published:
6 February 2025

What is CVE-2024-47258?

2N Access Commander, up to version 2.1, is susceptible to Man In The Middle attacks under default configuration settings. This vulnerability arises from the software's failure to properly verify certificates of 2N edge devices, potentially allowing attackers to intercept and manipulate communications. Users of affected versions should implement mitigations and upgrade to the latest version to enhance security.

Affected Version(s)

2N Access Commander 2N Access Commander 2.1 and prior

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-47258 : Man In The Middle Vulnerability in 2N Access Commander Software