Absolute Secure Access
cpe:2.3:a:absolute:secure_access:*:*:*:*:*:*:*
- < 14.10
A cross-site scripting vulnerability has been identified in Absolute Secure Access versions prior to 14.10. This issue allows attackers with administrative access to the console to disrupt another administrator's access. The vulnerability has a low attack complexity, requires high privileges, and necessitates active participation from the victim. While there is no impact on confidentiality or availability, it does pose a low integrity risk.
Exploitation of this vulnerability could lead to cross-site scripting, allowing for potential manipulation of the administrative console or interference with another administrator's session.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.