Vendors2Naccess_commanderall versions
Vulnerabilities

2N Access Commander

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2025-59786
Cookies are not Invalidated upon Logout and Password Change
Published 2026-03-04 · Analyzed
9.8EPSS 0.003
CVE-2025-59783
OS Command Injection over API
Published 2026-03-04 · Analyzed
8.8EPSS 0.009
CVE-2024-47255
In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which could allow for arbitrary code execution with root permissions.
Published 2024-11-05 · Modified
7.8EPSS 0.001
CVE-2024-47253
In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution. This vulnerability cannot be exploited by users with lower privilege roles.
Published 2024-11-05 · Modified
7.2EPSS 0.010
CVE-2024-47254
In 2N Access Commander versions 3.1.1.2 and prior, an Insufficient Verification of Data Authenticity vulnerability could allow an attacker to escalate their privileges and gain root access to the system.
Published 2024-11-05 · Modified
7.2EPSS 0.004
CVE-2025-59784
Log Pollution - Control Characters Not Escaped
Published 2026-03-04 · Analyzed
7.2EPSS 0.003
CVE-2025-59785
API - Insufficient Input Validation
Published 2026-03-04 · Analyzed
7.2EPSS 0.002
CVE-2025-59787
HTTP 5XX Internal Server Errors
Published 2026-03-04 · Analyzed
6.5EPSS 0.002