CVE-2026-0517
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2026-01-17

Last updated on: 2026-02-02

Assigner: NetMotion Software

Description
CVE-2026-0517 is a denial-of-service vulnerability in versions of Secure Access Server prior to 14.20. An attacker can send a specially crafted packet to a server and cause the server to crash
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-01-17
Last Modified
2026-02-02
Generated
2026-05-07
AI Q&A
2026-01-18
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
absolute_software secure_access to 14.20 (exc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

CVE-2026-0517 is a denial-of-service (DoS) vulnerability in Absolute Software's Secure Access product versions prior to 14.20. An attacker can send a specially crafted packet to the Secure Access server, causing it to crash and disrupt service. This vulnerability requires no privileges or user interaction and can be exploited remotely from an adjacent network. [1]


How can this vulnerability impact me? :

This vulnerability can cause the Secure Access server to crash, leading to a denial of service and disruption of availability. This means legitimate users may be unable to access the service while the server is down. [1]


What immediate steps should I take to mitigate this vulnerability?

To mitigate this vulnerability, you should upgrade Secure Access Server to version 14.20 or later, as the issue is resolved in these versions. Additionally, consider restricting access to the Secure Access server from adjacent networks to reduce exposure. [1]


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart