SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-40953

MEDIUM · CVSS 4.4 EPSS 0.07%

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

A heap overflow vulnerability in the certificate parsing function of Secure Access clients prior to version 14.55 allows attackers with local access and administrative privileges to execute a denial of service attack on the affected client. Organizations using these clients should prioritize patching to mitigate potential disruptions caused by this vulnerability.

CVE
CVE-2026-40953
Severity
MEDIUM
CVSS
4.4
EPSS
0.07%

Original NVD Description

CVE-2026-40953 is a heap overflow in the certificate parsing function of Secure Access clients prior to 14.55. Attackers with local access and administrator permissions can create a denial of service attack against the client over which they have control.

Related CVEs

Other vulnerabilities affecting the same vendor(s)