CVE-2025-59783
EUVD-2025-20827604.03.2026, 16:16
API endpoint for user synchronization in 2N Access Commander version 3.4.1 did not have a sufficient input validation allowing for OS command injection. This vulnerability can only be exploited after authenticating with administrator privileges.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| 2n | access_commander | 𝑥 < 3.4.2 |
𝑥
= Vulnerable software versions