CVE-2025-49080: Memory management vulnerability in Absolute Secure Access server versions 9.0 to 13.54
There is a memory management vulnerability in Absolute Secure Access server versions 9.0 to 13.54. Attackers with network access to the server can cause a Denial of Service by sending a specially crafted sequence of packets to the server. The attack complexity is low, there are no attack requirements, privileges, or user interaction required. Loss of availability is high; there is no impact on confidentiality or integrity.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-49080?
CVE-2025-49080 is classified as a memory management vulnerability that can lead to Denial of Service.
How do I fix CVE-2025-49080?
To fix CVE-2025-49080, it is recommended to update Absolute Secure Access server to the latest version beyond 13.54.
Who is affected by CVE-2025-49080?
CVE-2025-49080 affects users of Absolute Secure Access server versions 9.0 to 13.54.
What type of attack does CVE-2025-49080 enable?
CVE-2025-49080 enables attackers to execute a Denial of Service attack by sending a specially crafted sequence of packets.
What is the attack complexity of CVE-2025-49080?
The attack complexity for CVE-2025-49080 is low, making it easier for attackers to exploit.