Vulnerabilities > Absolute > Secure Access > 13.06

DATE CVE VULNERABILITY TITLE RISK
2025-05-28 CVE-2025-27702 Unspecified vulnerability in Absolute Secure Access
CVE-2025-27702 is a vulnerability in the management console of Absolute Secure Access prior to version 13.54.
network
low complexity
absolute
4.9
2025-05-28 CVE-2025-27703 Unspecified vulnerability in Absolute Secure Access
CVE-2025-27703 is a privilege escalation vulnerability in the management console of Absolute Secure Access prior to version 13.54.
network
low complexity
absolute
6.0
2025-05-28 CVE-2025-27706 Unspecified vulnerability in Absolute Secure Access
CVE-2025-27706 is a cross-site scripting vulnerability in the management console of Absolute Secure Access prior to version 13.54.
network
low complexity
absolute
3.4
2024-07-25 CVE-2024-40873 Cross-site Scripting vulnerability in Absolute Secure Access
There is a cross-site scripting vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.07. Attackers with system administrator permissions can interfere with another system administrator’s use of the publishing UI when the administrators are editing the same management object.
network
low complexity
absolute CWE-79
3.4