Skip to content
Noroxi

Delinea records

13 published records for vendor delinea.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

13 records
  • Delinea Secret Server before 11.7.000001 allows attackers to bypass authentication via the SOAP API in SecretServer/webservices/SSWebService

    HighCVSS 8.8No exploitEPSS 1%

    delinea · secret serverApr 28, 2024

  • Delinea addressed a reported case on Secret Server v11.7.31 (protocol handler version 6.0.3.26) where, within the protocol handler function,

    HighCVSS 8.3No exploitEPSS 1%

    delinea · secret serverDec 26, 2024

  • In Delinea PAM Secret Server 11.4, it is possible for a user assigned "Administer Reports" permission and/or with access to Report functiona

    HighCVSS 8.4No exploitEPSS 1%

    delinea · secret serverMar 13, 2024

  • CVE-2023-4589
    28Monitor

    Insufficient verification of data authenticity vulnerability in Delinea Secret Server

    HighCVSS 7.2No exploitEPSS 0%

    delinea · secret serverSep 6, 2023

  • CVE-2024-5865
    26Monitor

    Arbitrary File Reading in Centrify PAS

    MediumCVSS 6.5No exploitEPSS 0%

    delinea · privileged access serviceJul 2, 2024

  • In Delinea PAM Secret Server 11.4, it is possible for an attacker (with Administrator access to the Secret Server machine) to read the follo

    MediumCVSS 6.7No exploitEPSS 0%

    delinea · secret serverMar 13, 2024

  • Insecure key exchange between Delinea PAM Secret Server 11.4 and the Distributed Engine 8.4.3 allows a PAM administrator to obtain the Symme

    MediumCVSS 5.9No exploitEPSS 0%

    delinea · distributed engineMar 13, 2024

  • User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4.

    MediumCVSS 5.3No exploitEPSS 0%

    delinea · secret serverMar 13, 2024

  • Failure in Password Rotation and Check-in Mechanism in Secret Server Allows Reuse of Credentials

    MediumCVSS 5.3No exploitEPSS 0%

    delinea · secret serverJan 27, 2026

  • CVE-2023-4588
    19Monitor

    File accessibility vulnerability in Delinea Secret Server

    MediumCVSS 4.9No exploitEPSS 0%

    delinea · secret serverSep 6, 2023

  • Broken Access Control in the Report functionality of Delinea PAM Secret Server 11.4 allows unprivileged users, when Unlimited Admin Mode is

    MediumCVSS 4.3No exploitEPSS 0%

    delinea · secret serverMar 13, 2024

  • CVE-2024-5866
    17Monitor

    Arbitrary Directory Listing in Centrify PAS

    MediumCVSS 4.3No exploitEPSS 0%

    delinea · privileged access serviceJul 2, 2024

  • CVE-2025-6943
    16Monitor

    Secret Server version 11.7 and earlier is vulnerable to a SQL report creation vulnerability that allows an administrator to gain access to r

    MediumCVSS 4.0No exploitEPSS 0%

    delinea · secret serverJul 2, 2025