CyberRota Analysis
AI-GeneratedA privilege misconfiguration in the Secure Access installer for Windows clients and servers prior to version 14.55 allows attackers with local access to elevate their privileges to Administrator if the software is installed in a non-default location. This vulnerability poses a significant risk, as it can lead to unauthorized access and control over affected systems. Organizations using Secure Access on Windows should prioritize patching to mitigate potential exploitation.
Original NVD Description
CVE-2026-40952 is a privilege misconfiguration in the Secure Access installer for the Windows client and server prior to version 14.55. Attackers with local access to the client or server can use it to elevate privileges to Administrator when Secure Access is installed in a non-default location.
Related CVEs
Other vulnerabilities affecting the same vendor(s)