In Secure Access 12.70 and prior to 14.20, the logging
subsystem may write an unredacted authentication token to logs under
certain configurations. Any party with access to those logs could read
the token and reuse it to access an integrated system.
subsystem may write an unredacted authentication token to logs under
certain configurations. Any party with access to those logs could read
the token and reuse it to access an integrated system.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 17 Jan 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Secure Access 12.70 and prior to 14.20, the logging subsystem may write an unredacted authentication token to logs under certain configurations. Any party with access to those logs could read the token and reuse it to access an integrated system. | |
| Title | Information Disclosure in Secure Access Between 12.70 and 14.20 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Absolute
Published:
Updated: 2026-01-17T01:13:59.183Z
Reserved: 2025-12-12T17:25:37.542Z
Link: CVE-2026-0519
No data.
Status : Received
Published: 2026-01-17T02:15:49.627
Modified: 2026-01-17T02:15:49.627
Link: CVE-2026-0519
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.