216.73.216.6

CVE-2025-59785

· Published 04/03/2026 16:16 · Modified 05/03/2026 14:49

Labels: CVE-2025-59785 2026-03-04CVE-2025-59785CWE-1286be69f613-e5f6-419b-800c-30351aa8933c

Essential information

Published
04/03/2026 16:16
Modified
05/03/2026 14:49
Author
Creator
CVSS
5.3 MEDIUM (v3) 5.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Improper validation of API end-point in 2N Access Commander version 3.4.2 and prior allows attacker to bypass password policy for backup file encryption. This vulnerability can only be exploited after authenticating with administrator privileges.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
be69f613-e5f6-419b-800c-30351aa8933c
NVD
View on NVD

Affected products (CPE)

ProductCPE
2n / access commander cpe:2.3:a:2n:access_commander:*:*:*:*:*:*:*:*

References