CVE-2025-59785
API - Insufficient Input Validation
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Improper validation of API end-point in 2N Access Commander version 3.4.2 and prior allows attacker to bypass password policy for backup file encryption. This vulnerability can only be exploited after authenticating with administrator privileges.
| CWE | CWE-1286 |
| Vendor | 2n telekomunikace a.s. |
| Product | 2n access commander |
| Published | Mar 4, 2026 |
| Last Updated | Mar 4, 2026 |
Stay Ahead of the Next One
Get instant alerts for 2n telekomunikace a.s. 2n access commander
Be the first to know when new unknown vulnerabilities affecting 2n telekomunikace a.s. 2n access commander are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
2N Telekomunikace a.s. / 2N Access Commander
0 < 3.5