CVE-2026-33447
CVE-2026-33447 is a buffer overflow in a message parsing function of the Secure Access client prior to 14.50. Attackers with control of a modified server can send a special packet that can overwrite a small portion of memory conceivably leading to memory corruption or denial of service.
Ver en NVDAnálisis
Absolute Secure Access is a common enterprise VPN and Zero Trust solution used in corporate environments. A CVSS 9.8 buffer overflow in a security client is highly significant as it could allow for system compromise if the server is malicious or compromised.
Severidad
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HCWE-121EPSS
Afecta
absolute:secure_accessDescripción técnica
CVE-2026-33447 is a buffer overflow in a message parsing function of the Secure Access client prior to 14.50. Attackers with control of a modified server can send a special packet that can overwrite a small portion of memory conceivably leading to memory corruption or denial of service.