Skip to content
Noroxi

2N records

9 published records for vendor 2n.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
55.6%
Median publish → KEV
No record has entered KEV

All records

9 records
  • OS Command Injection over API

    HighCVSS 8.8No exploitEPSS 1%

    2n · access commanderMar 4, 2026

  • In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which could allow for arbitr

    HighCVSS 7.8No exploitEPSS 0%

    2n · access commanderNov 5, 2024

  • In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to

    HighCVSS 7.2No exploitEPSS 1%

    2n · access commanderNov 5, 2024

  • In 2N Access Commander versions 3.1.1.2 and prior, an Insufficient Verification of Data Authenticity vulnerability could allow an attacker

    HighCVSS 7.2No exploitEPSS 0%

    2n · access commanderNov 5, 2024

  • Log Pollution - Control Characters Not Escaped

    MediumCVSS 6.9No exploitEPSS 0%

    2n · access commanderMar 4, 2026

  • Cookies are not Invalidated upon Logout and Password Change

    MediumCVSS 6.0No exploitEPSS 0%

    2n · access commanderMar 4, 2026

  • On 2N Access Unit 2.0 2.31.0.40.5 devices, an attacker can pose as the web relay for a man-in-the-middle attack.

    MediumCVSS 5.9No exploitEPSS 1%

    2n · access unit 2.0 firmwareAug 13, 2021

  • HTTP 5XX Internal Server Errors

    MediumCVSS 5.3No exploitEPSS 0%

    2n · access commanderMar 4, 2026

  • API - Insufficient Input Validation

    MediumCVSS 5.3No exploitEPSS 0%

    2n · access commanderMar 4, 2026