CVE-2026-0517
BaseFortify
Publication date: 2026-01-17
Last updated on: 2026-02-02
Assigner: NetMotion Software
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| absolute_software | secure_access | to 14.20 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
CVE-2026-0517 is a denial-of-service (DoS) vulnerability in Absolute Software's Secure Access product versions prior to 14.20. An attacker can send a specially crafted packet to the Secure Access server, causing it to crash and disrupt service. This vulnerability requires no privileges or user interaction and can be exploited remotely from an adjacent network. [1]
How can this vulnerability impact me? :
This vulnerability can cause the Secure Access server to crash, leading to a denial of service and disruption of availability. This means legitimate users may be unable to access the service while the server is down. [1]
What immediate steps should I take to mitigate this vulnerability?
To mitigate this vulnerability, you should upgrade Secure Access Server to version 14.20 or later, as the issue is resolved in these versions. Additionally, consider restricting access to the Secure Access server from adjacent networks to reduce exposure. [1]