CVE-2026-33443
Modified Modified - Updated After Analysis

Memory Corruption in Secure Access Server

Vulnerability report for CVE-2026-33443, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-15

Last updated on: 2026-07-16

Assigner: NetMotion Software

Description

CVE-2026-33443 is a memory management error in Secure Access servers prior to 14.55. Attackers with an intimate knowledge of and total control over the tunnel protocol can create a persistent DoS against the server.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-15
Last Modified
2026-07-16
Generated
2026-08-05
AI Q&A
2026-07-16
EPSS Evaluated
2026-08-03
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
absolute secure_access to 14.55 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-400 The product does not properly control the allocation and maintenance of a limited resource.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-33443 is a memory management error in Secure Access servers running versions before 14.55. Attackers with full knowledge and control over the tunnel protocol can exploit this to cause a persistent denial-of-service (DoS) attack against the server.

Detection Guidance

Detection of CVE-2026-33443 requires monitoring for unusual memory usage patterns or service disruptions in Secure Access servers running versions prior to 14.55. Check server logs for persistent DoS attempts or tunnel protocol anomalies. Use network monitoring tools to detect abnormal traffic volumes targeting the server.

Impact Analysis

This vulnerability can disrupt service availability by causing a persistent DoS attack. It does not require user interaction or elevated privileges, making it easier for attackers to exploit. Systems running affected versions may become unresponsive or crash.

Compliance Impact

A persistent DoS attack could lead to prolonged downtime, potentially violating availability requirements in GDPR and HIPAA. This may result in non-compliance, data processing disruptions, and legal penalties due to failed service continuity.

Mitigation Strategies

Update Secure Access servers to version 14.55 or later to address the memory management error and prevent persistent DoS attacks.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-33443. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart