Absolute

Secure Access

57 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.31%
  • Veröffentlicht 13.08.2026 16:18:07
  • Zuletzt bearbeitet 04.09.2026 20:39:58

CVE-2026-55401 is a null dereference vulnerability on the load-balancing sub-system of Secure Access servers prior to 14.57. Attackers can send an unauthenticated packet to a Secure Access server with load balancing enabled, which results in the i...

  • EPSS 0.23%
  • Veröffentlicht 13.08.2026 16:18:07
  • Zuletzt bearbeitet 04.09.2026 20:38:55

CVE-2026-55400 is an integer underflow in Secure Access servers prior to version 14.57. Attackers with an authenticated session can send specially crafted traffic to a server in a non-default configuration and cause a persistent denial of service.

  • EPSS 0.31%
  • Veröffentlicht 13.08.2026 16:16:22
  • Zuletzt bearbeitet 04.09.2026 20:37:29

CVE-2026-55402 is an out of bounds read vulnerability in Secure Access servers prior to version 14.57. Attackers with an ‘in the middle’ position can send specially crafted data to a server causing a persistent denial of service.

  • EPSS 0.22%
  • Veröffentlicht 15.07.2026 20:20:13
  • Zuletzt bearbeitet 16.07.2026 16:25:48

CVE-2026-55399 is a resource exhaustion vulnerability in the Secure Access publisher prior to 14.55. Attackers with valid credentials to the Secure Access tunnel can create a non-persistent DoS against the publisher.

  • EPSS 0.21%
  • Veröffentlicht 15.07.2026 20:17:00
  • Zuletzt bearbeitet 16.07.2026 16:27:38

CVE-2026-55398 is a memory management vulnerability in Secure Access clients and servers prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against the server.

  • EPSS 0.22%
  • Veröffentlicht 15.07.2026 20:17:00
  • Zuletzt bearbeitet 16.07.2026 14:16:52

CVE-2026-40958 is a input validation error in Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against their client.

  • EPSS 0.31%
  • Veröffentlicht 15.07.2026 20:17:00
  • Zuletzt bearbeitet 16.07.2026 14:16:51

o   CVE-2026-40957 is a frameable content vulnerability in the Secure Access server login page prior to 14.55. Attackers with control of a malicious web site could use it to potentially steal credentials from an unwary administrator.

  • EPSS 0.17%
  • Veröffentlicht 15.07.2026 20:17:00
  • Zuletzt bearbeitet 16.07.2026 14:16:51

CVE-2026-40956 is a memory disclosure vulnerability in Secure Access client versions prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can cause a small amount of random memory to leak.

  • EPSS 0.2%
  • Veröffentlicht 15.07.2026 20:16:59
  • Zuletzt bearbeitet 16.07.2026 14:16:51

CVE-2026-40955 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against thei...

  • EPSS 0.2%
  • Veröffentlicht 15.07.2026 20:16:58
  • Zuletzt bearbeitet 16.07.2026 14:16:51

CVE-2026-40954 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against thei...