CVE-2025-54088: Open Redirect in Secure Access prior to 14.10
CVE-2025-54088 is an open-redirect vulnerability in Secure Access prior to version 14.10. Attackers with access to the console can redirect victims to an arbitrary URL. The attack complexity is low, attack requirements are present, no privileges are required, and users must actively participate in the attack. Impact to confidentiality is low and there is no impact to integrity or availability. There are high severity impacts to confidentiality, integrity, availability in subsequent systems.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54088?
CVE-2025-54088 is categorized as a low severity vulnerability as it has low attack complexity and no special privileges are required to exploit it.
How do I fix CVE-2025-54088?
To remediate CVE-2025-54088, upgrade to Secure Access version 14.10 or later.
What type of vulnerability is CVE-2025-54088?
CVE-2025-54088 is classified as an open-redirect vulnerability.
Who can exploit CVE-2025-54088?
Any attacker with access to the console can potentially exploit CVE-2025-54088 to redirect users.
What are the implications of CVE-2025-54088?
Exploitation of CVE-2025-54088 can lead to users being redirected to arbitrary and potentially malicious URLs.