CVE-2025-59786
Cookies are not Invalidated upon Logout and Password Change
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
2N Access Commander version 3.4.2 and prior improperly invalidates session tokens, allowing multiple session cookies to remain active after logout in web application.
| CWE | CWE-613 |
| Vendor | 2n telekomunikace a.s. |
| Product | 2n access commander |
| Published | Mar 4, 2026 |
| Last Updated | Mar 4, 2026 |
Stay Ahead of the Next One
Get instant alerts for 2n telekomunikace a.s. 2n access commander
Be the first to know when new unknown vulnerabilities affecting 2n telekomunikace a.s. 2n access commander are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
2N Telekomunikace a.s. / 2N Access Commander
0 < 3.5