2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent over API may be included in the logs without prior validation or sanitisation.
This vulnerability can only be exploited after authenticating with administrator privileges.
Metrics
Affected Vendors & Products
References
History
Thu, 05 Mar 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
2n
2n access Commander |
|
| Vendors & Products |
2n
2n access Commander |
Wed, 04 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 04 Mar 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | : Improper Output Neutralization for Logs vulnerability in 2N telekomunikace 2N Access Commander on Linux allows Log Injection-Tampering-Forging.This issue affects 2N Access Commander: before 3.4.2. | 2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent over API may be included in the logs without prior validation or sanitisation. This vulnerability can only be exploited after authenticating with administrator privileges. |
Wed, 04 Mar 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | : Improper Output Neutralization for Logs vulnerability in 2N telekomunikace 2N Access Commander on Linux allows Log Injection-Tampering-Forging.This issue affects 2N Access Commander: before 3.4.2. | |
| Title | Log Pollution - Control Characters Not Escaped | |
| Weaknesses | CWE-117 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: 2N
Published: 2026-03-04T15:26:47.073Z
Updated: 2026-03-04T16:16:44.717Z
Reserved: 2025-09-19T17:22:49.648Z
Link: CVE-2025-59784
Updated: 2026-03-04T16:16:41.140Z
Status : Awaiting Analysis
Published: 2026-03-04T16:16:25.150
Modified: 2026-03-04T18:08:05.730
Link: CVE-2025-59784
No data.