Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Access Commander CRITICAL 9.8
CVE-2025-59786

2N Access Commander version 3.4.2 and prior improperly invalidates session tokens, allowing multiple session cookies to remain active after logout in…

Fix: 3.5+
Fix from $2,300 2026-03-04
Access Commander HIGH 7.2
CVE-2025-59784

2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent over API may be included in the logs without prio…

Fix: 3.4.2+
Fix from $1,950 2026-03-04
Access Commander HIGH 7.2
CVE-2025-59785

Improper validation of API end-point in 2N Access Commander version 3.4.2 and prior allows attacker to bypass password policy for backup file encrypt…

Fix: 3.5+
Fix from $1,950 2026-03-04
Access Commander MEDIUM 6.5
CVE-2025-59787

2N Access Commander application version 3.4.2 and prior returns HTTP 500 Internal Server Error responses when receiving malformed or manipulated requ…

Fix: 3.5+
Fix from $1,600 2026-03-04
Access Commander HIGH 7.2
CVE-2025-59783

API endpoint for user synchronization in 2N Access Commander version 3.4.1 did not have a sufficient input validation allowing for OS command injecti…

Fix: 3.4.2+
Fix from $1,950 2026-03-04
Access Commander HIGH 7.8
CVE-2024-47255

In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which could allow for arbitrary code…

Fix: after 3.1.1.2
Fix from $1,950 2024-11-05
Access Commander HIGH 7.2
CVE-2024-47254

In 2N Access Commander versions 3.1.1.2 and prior, an Insufficient Verification of Data Authenticity vulnerability could allow an attacker to escal…

Fix: after 3.1.1.2
Fix from $1,950 2024-11-05
Access Commander HIGH 7.2
CVE-2024-47253

In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write fil…

Fix: after 3.1.1.2
Fix from $1,950 2024-11-05
Access Unit 2.0 Firmware MEDIUM 5.9
CVE-2021-31399

On 2N Access Unit 2.0 2.31.0.40.5 devices, an attacker can pose as the web relay for a man-in-the-middle attack.

No fix yet
Fix from $1,600 2021-08-13