2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent over API may be included in the logs without prior validation or sanitisation.
This vulnerability can only be exploited after authenticating with administrator privileges.
This vulnerability can only be exploited after authenticating with administrator privileges.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 04 Mar 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | : Improper Output Neutralization for Logs vulnerability in 2N telekomunikace 2N Access Commander on Linux allows Log Injection-Tampering-Forging.This issue affects 2N Access Commander: before 3.4.2. | 2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent over API may be included in the logs without prior validation or sanitisation. This vulnerability can only be exploited after authenticating with administrator privileges. |
Wed, 04 Mar 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | : Improper Output Neutralization for Logs vulnerability in 2N telekomunikace 2N Access Commander on Linux allows Log Injection-Tampering-Forging.This issue affects 2N Access Commander: before 3.4.2. | |
| Title | Log Pollution - Control Characters Not Escaped | |
| Weaknesses | CWE-117 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: 2N
Published:
Updated: 2026-03-04T16:16:44.717Z
Reserved: 2025-09-19T17:22:49.648Z
Link: CVE-2025-59784
No data.
Status : Received
Published: 2026-03-04T16:16:25.150
Modified: 2026-03-04T16:16:25.150
Link: CVE-2025-59784
No data.
OpenCVE Enrichment
No data.
Weaknesses