LenelS2 NetBox access control and event monitoring system was discovered to contain an unauthenticated RCE in versions prior to and including 5.6.1, which allows an attacker to execute malicious commands with elevated permissions.
History

Mon, 02 Feb 2026 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Honeywell
Honeywell lenels2 Netbox
CPEs cpe:2.3:a:honeywell:lenels2_netbox:*:*:*:*:*:*:*:*
Vendors & Products Honeywell
Honeywell lenels2 Netbox
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00261}

epss

{'score': 0.002}


cve-icon MITRE

Status: PUBLISHED

Assigner: Carrier

Published:

Updated: 2024-08-01T19:11:53.525Z

Reserved: 2024-03-13T13:55:51.729Z

Link: CVE-2024-2421

cve-icon Vulnrichment

Updated: 2024-08-01T19:11:53.525Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-30T18:15:09.230

Modified: 2026-02-02T13:11:33.113

Link: CVE-2024-2421

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.