CVE-2025-54088

Severity CVSS v4.0:
MEDIUM
Type:
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
02/10/2025
Last modified:
16/10/2025

Description

CVE-2025-54088 is an open-redirect vulnerability in Secure<br /> Access prior to version 14.10. Attackers with access to the console can<br /> redirect victims to an arbitrary URL. The attack complexity is low, attack<br /> requirements are present, no privileges are required, and users must actively<br /> participate in the attack. Impact to confidentiality is low and there is no<br /> impact to integrity or availability. There are high severity impacts to<br /> confidentiality, integrity, availability in subsequent systems.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:absolute:secure_access:*:*:*:*:*:*:*:* 14.10 (excluding)