On 2N Access Unit 2.0 2.31.0.40.5 devices, an attacker can pose as the web relay for a man-in-the-middle attack.
References
Link | Resource |
---|---|
https://excellium-services.com/cert-xlm-advisory/cve-2021-31399/ | Third Party Advisory |
https://www.2n.cz/en_GB/products/ip-access-control/2n-access-unit-2 | Vendor Advisory |
https://excellium-services.com/cert-xlm-advisory/cve-2021-31399/ | Third Party Advisory |
https://www.2n.cz/en_GB/products/ip-access-control/2n-access-unit-2 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 06:05
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 4.3
v3 : 4.6 |
References | () https://excellium-services.com/cert-xlm-advisory/cve-2021-31399/ - Third Party Advisory | |
References | () https://www.2n.cz/en_GB/products/ip-access-control/2n-access-unit-2 - Vendor Advisory |
24 Aug 2021, 21:52
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-295 | |
CPE | cpe:2.3:o:2n:access_unit_2.0_firmware:2.31.0.40.5:*:*:*:*:*:*:* cpe:2.3:h:2n:access_unit_2.0:-:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : 4.3
v3 : 5.9 |
References | (MISC) https://www.2n.cz/en_GB/products/ip-access-control/2n-access-unit-2 - Vendor Advisory | |
References | (MISC) https://excellium-services.com/cert-xlm-advisory/cve-2021-31399/ - Third Party Advisory |
13 Aug 2021, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-08-13 13:15
Updated : 2024-11-21 06:05
NVD link : CVE-2021-31399
Mitre link : CVE-2021-31399
CVE.ORG link : CVE-2021-31399
JSON object : View
Products Affected
2n
- access_unit_2.0
- access_unit_2.0_firmware
CWE
CWE-295
Improper Certificate Validation