2N Access Commander是2N公司的一个门禁控制解决方案。 2N Access Commander 3.4.1版本存在安全漏洞,该漏洞源于用户同步API端点输入验证不足,可能导致经过管理员身份验证的攻击者实施OS命令注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| 2N Telekomunikace a.s. | 2N Access Commander | 0 ~ 3.4.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-59785 | API - Insufficient Input Validation | |
| CVE-2025-59786 | Cookies are not Invalidated upon Logout and Password Change | |
| CVE-2025-59784 | Log Pollution - Control Characters Not Escaped | |
| CVE-2025-59787 | HTTP 5XX Internal Server Errors |
No comments yet