CVE-2026-97717: Denial of Service in Absolute Secure Access
Published Oct 7, 2026
·Updated
CVE-2026-97717 is a vulnerability in the proxy sub-system of Secure Access servers prior to 14.60. Authenticated attackers can send malformed data to the server and cause a persistent denial of service.
Affected Software
1 affected component
Absolute Secure Access<14.60
Event History
Oct 7, 2026
CVE Published
via MITRE·07:54 PM
Data Sourced
via MITRE·07:54 PM
Description
Data Sourced
via NVD·08:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments are affected?
Secure Access servers prior to version 14.60 are affected. The issue is in the proxy sub-system.
2
What access does an attacker need?
An attacker must be authenticated to the Secure Access server and able to send malformed data to it. No user interaction is required.
3
What is the impact of successful exploitation?
Successful exploitation can cause a persistent denial of service on the affected server. The provided CVSS vector indicates availability impact without confidentiality or integrity impact.