CVE-2025-27702 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

CVE-2025-27702 is a vulnerability in the management console of Absolute Secure Access prior to version 13.54. Attackers with administrative access to the cons…
Medium CVSS: 6.9

CVE-2025-27702

CVE-2025-27702 is a vulnerability in the management console of Absolute
Secure Access prior to version 13.54. Attackers with administrative
access to the console and who have been assigned a certain set of
permissions can bypass those permissions to improperly modify settings.
The attack complexity is low, there are no preexisting attack
requirements; the privileges required are high, and there is no user
interaction required. There is no impact to system confidentiality or
availability, impact to system integrity is high.
Vendor
Absolute
Product
Secure Access
CWE
CWE-284
Yayın Tarihi
2025-05-28 21:15:21
Güncelleme
2025-06-04 15:37:13
Source Identifier
SecurityResponse@netmotionsoftware.com
KEV Date Added
-

Kategoriler

Referanslar