PT-2026-71686 · Unknown · Secure Access
CVE-2026-55401
·
Published
2026-08-13
·
Updated
2026-08-13
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Secure Access servers versions prior to 14.57
Description
A null dereference issue exists in the load-balancing sub-system. A null dereference occurs when a program attempts to read or write to a memory address that is NULL, typically causing the application to crash. An unauthenticated attacker can send a specially crafted packet to a server with load balancing enabled, causing the internal load balancer to crash. Despite this, the server remains capable of accepting connections and issuing failovers to connected clients.
Recommendations
Update to version 14.57 or later.
Fix
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Secure Access