CVE-2026-97714: Denial of service vulnerability in Secure Access
CVE-2026-97714 is a is a vulnerability in the authentication sub-system of Secure Access servers prior to version 14.60. Attackers can send a malformed response during authentication and cause a persistent denial of service.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Secure Accessto a version that resolves this vulnerability.Fixed in 14.60
Event History
Frequently Asked Questions
Which deployments are affected?
Secure Access servers running a version earlier than 14.60 are affected. The issue is in the authentication sub-system.
What does an attacker need to do to exploit this issue?
An attacker can trigger the issue by sending a malformed response during authentication. The supplied CVSS vector indicates no privileges or user interaction are required, although attack complexity is rated high.
What is the operational impact?
Successful exploitation can cause a persistent denial of service on the affected Secure Access server. The provided impact metrics indicate availability is affected, while confidentiality and integrity are not.