Absolute Secure Access Cross-Site Scripting Vulnerability

Vulnerability

A cross-site scripting vulnerability has been identified in Absolute Secure Access versions prior to 14.10. This issue allows attackers with administrative access to the console to disrupt another administrator's access. The vulnerability has a low attack complexity, requires high privileges, and necessitates active participation from the victim. While there is no impact on confidentiality or availability, it does pose a low integrity risk.

Impact

Exploitation of this vulnerability could lead to cross-site scripting, allowing for potential manipulation of the administrative console or interference with another administrator's session.

Added: Oct 2, 2025, 9:20 PM
Updated: Oct 2, 2025, 9:20 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.0
exploitability
2.4
remediation
0.0
relevance
0.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.