CVE-2025-59707
Published Mar 25, 2026In N2W before 4.3.2 and 4.4.x before 4.4.1, there is potential remote code execution and account credentials theft because of a spoofing vulnerability.
Vendor archive
2 CVEs tagged to vendor n2ws — 2 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
In N2W before 4.3.2 and 4.4.x before 4.4.1, there is potential remote code execution and account credentials theft because of a spoofing vulnerability.
In N2W before 4.3.2 and 4.4.0 before 4.4.1, improper validation of API request parameters enables remote code execution.