SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-40958

LOW · CVSS 3.7 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

An input validation error in Secure Access clients prior to version 14.55 allows attackers with full control over the tunnel protocol to execute a non-persistent Denial of Service (DoS) attack against the client. While the severity is rated low, organizations using affected versions should prioritize patching to mitigate potential disruptions in service. This is particularly relevant for environments relying on Secure Access for critical operations.

CVE
CVE-2026-40958
Severity
LOW
CVSS
3.7
EPSS
0.22%

Original NVD Description

CVE-2026-40958 is a input validation error in Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against their client.

Related CVEs

Other vulnerabilities affecting the same vendor(s)