SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-40957

HIGH · CVSS 7.5 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

A frameable content vulnerability exists in the Secure Access server login page prior to version 14.55, allowing attackers to exploit this weakness through a malicious website. This could lead to the theft of credentials from unsuspecting administrators, posing a significant security risk. Organizations using affected versions should prioritize patching to mitigate potential credential theft.

CVE
CVE-2026-40957
Severity
HIGH
CVSS
7.5
EPSS
0.31%

Original NVD Description

o   CVE-2026-40957 is a frameable content vulnerability in the Secure Access server login page prior to 14.55. Attackers with control of a malicious web site could use it to potentially steal credentials from an unwary administrator.

Related CVEs

Other vulnerabilities affecting the same vendor(s)