CVE-2025-6942

The distributed engine versions 8.4.39.0 and earlier of Secret Server versions 11.7.49 and earlier can be exploited during an initial authorization event that would allow an attacker to impersonate another distributed engine.
Configurations

No configuration.

History

03 Jul 2025, 15:13

Type Values Removed Values Added
Summary
  • (es) Las versiones 8.4.39.0 y anteriores del motor distribuido de las versiones 11.7.49 y anteriores de Secret Server pueden explotarse durante un evento de autorización inicial que permitiría a un atacante hacerse pasar por otro motor distribuido.

02 Jul 2025, 20:15

Type Values Removed Values Added
References
  • {'url': 'https://trust.delinea.com', 'source': '1443cd92-d354-46d2-9290-d812316ca43a'}
  • () https://trust.delinea.com/?tcuUid=2b68edca-7930-438d-b960-2d6da07cdde9 -
Summary (en) The distributed engine of Secret Server versions 11.7.49 and earlier can be exploited during an initial authorization event that would allow an attacker to impersonate another distributed engine. (en) The distributed engine versions 8.4.39.0 and earlier of Secret Server versions 11.7.49 and earlier can be exploited during an initial authorization event that would allow an attacker to impersonate another distributed engine.

02 Jul 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-02 16:15

Updated : 2025-07-03 15:13


NVD link : CVE-2025-6942

Mitre link : CVE-2025-6942

CVE.ORG link : CVE-2025-6942


JSON object : View

Products Affected

No product.

CWE
CWE-639

Authorization Bypass Through User-Controlled Key