Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Log Pollution - Control Characters Not Escaped
Vulnerability Description
2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent over API may be included in the logs without prior validation or sanitisation. This vulnerability can only be exploited after authenticating with administrator privileges.
CVSS Information
N/A
Vulnerability Type
日志输出的转义处理不恰当
Vulnerability Title
2N Access Commander 安全漏洞
Vulnerability Description
2N Access Commander是2N公司的一个门禁控制解决方案。 2N Access Commander 3.4.1及之前版本存在安全漏洞,该漏洞源于日志污染,可能导致经过管理员身份验证的攻击者将未经验证或清理的参数包含在日志中。
CVSS Information
N/A
Vulnerability Type
N/A