CVE-2026-0517: Denial of Service in Secure Access Servers Prior to 14.20.
Published Jan 17, 2026
·Updated
CVE-2026-0517 is a denial-of-service vulnerability in versions of Secure Access Server prior to 14.20. An attacker can send a specially crafted packet to a server and cause the server to crash
Affected Software
2 affected components
Secure Access Secure Access Server<14.20
Absolute Secure Access<14.20
Event History
Jan 17, 2026
CVE Published
via MITRE·01:04 AM
Data Sourced
via MITRE·01:04 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-0517?
CVE-2026-0517 is classified as a denial-of-service vulnerability.
2
How do I fix CVE-2026-0517?
To mitigate CVE-2026-0517, upgrade the Secure Access Server to version 14.20 or later.
3
What versions are affected by CVE-2026-0517?
CVE-2026-0517 affects versions of Secure Access Server prior to 14.20.
4
What type of attack does CVE-2026-0517 involve?
CVE-2026-0517 involves an attacker sending a specially crafted packet to cause a server crash.
5
What is the consequence of exploiting CVE-2026-0517?
Exploitation of CVE-2026-0517 can lead to a denial of service, making the server unavailable.