TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2026-0519

LOW
3.4

Beschreibung

In Secure Access 12.70 and prior to 14.20, the logging subsystem may write an unredacted authentication token to logs under certain configurations. Any party with access to those logs could read the token and reuse it to access an integrated system.

CVE Details

CVSS v3.1 Bewertung3.4
SchweregradLOW
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienHIGH
BenutzerinteraktionNONE
Veroffentlicht1/17/2026
Zuletzt geandert2/2/2026
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

absolute:secure_access

Schwachen (CWE)

CWE-532

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.