CVE-2010-2468: Critical severity lenels2 netbox vulnerability
The S2 Security NetBox 2.x and 3.x, as used in the Linear eMerge 50 and 5000 and the Sonitrol eAccess, uses a weak hash algorithm for storing the Administrator password, which makes it easier for context-dependent attackers to obtain privileged access by recovering the cleartext of this password.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2468?
CVE-2010-2468 has a moderate severity rating due to the use of a weak hash algorithm for storing administrator passwords.
How do I fix CVE-2010-2468?
To fix CVE-2010-2468, update to the latest version of S2 Security NetBox that utilizes a stronger hashing algorithm for password storage.
What software versions are affected by CVE-2010-2468?
CVE-2010-2468 affects S2 Security NetBox versions 2.5 and 3.3, as well as Linear Emerge 50, Linear Emerge 5000, and Sonitrol eAccess.
What impact does CVE-2010-2468 have on security?
The impact of CVE-2010-2468 allows attackers to potentially recover plaintext passwords, leading to unauthorized privileged access.
Can CVE-2010-2468 be exploited remotely?
CVE-2010-2468 can be exploited by context-dependent attackers with access to the system, making physical or local access a requirement.