Delinea kayıtları
delinea üreticisine ait 13 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-26 Path Traversal: '/dir/../filename'2
- CWE-287 Improper Authentication2
- CWE-284 Improper Access Control1
- CWE-316 Cleartext Storage of Sensitive Information in Memory1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-321 Use of Hard-coded Cryptographic Key1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
13 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2024-33891İstismar yok | Delinea Secret Server before 11.7.000001 allows attackers to bypass authentication via the SOAP API in SecretServer/webservices/SSWebServicedelinea · secret server · CWE-321 | Yüksek8,8 | — | %1,0 | 28 Nis 2024 |
33İzleyin | CVE-2024-12908İstismar yok | Delinea addressed a reported case on Secret Server v11.7.31 (protocol handler version 6.0.3.26) where, within the protocol handler function,delinea · secret server · CWE-94 | Yüksek8,3 | — | %0,7 | 26 Ara 2024 |
33İzleyin | CVE-2024-25652İstismar yok | In Delinea PAM Secret Server 11.4, it is possible for a user assigned "Administer Reports" permission and/or with access to Report functionadelinea · secret server · CWE-287 | Yüksek8,4 | — | %0,6 | 13 Mar 2024 |
28İzleyin | CVE-2023-4589İstismar yok | Insufficient verification of data authenticity vulnerability in Delinea Secret Serverdelinea · secret server · CWE-345 | Yüksek7,2 | — | %0,3 | 6 Eyl 2023 |
26İzleyin | CVE-2024-5865İstismar yok | Arbitrary File Reading in Centrify PASdelinea · privileged access service · CWE-26 | Orta6,5 | — | %0,5 | 2 Tem 2024 |
26İzleyin | CVE-2024-25649İstismar yok | In Delinea PAM Secret Server 11.4, it is possible for an attacker (with Administrator access to the Secret Server machine) to read the follodelinea · secret server · CWE-316 | Orta6,7 | — | %0,1 | 13 Mar 2024 |
23İzleyin | CVE-2024-25650İstismar yok | Insecure key exchange between Delinea PAM Secret Server 11.4 and the Distributed Engine 8.4.3 allows a PAM administrator to obtain the Symmedelinea · distributed engine · CWE-319 | Orta5,9 | — | %0,3 | 13 Mar 2024 |
21İzleyin | CVE-2024-25651İstismar yok | User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4.delinea · secret server · CWE-203 | Orta5,3 | — | %0,5 | 13 Mar 2024 |
21İzleyin | CVE-2025-12810İstismar yok | Failure in Password Rotation and Check-in Mechanism in Secret Server Allows Reuse of Credentialsdelinea · secret server · CWE-287 | Orta5,3 | — | %0,5 | 27 Oca 2026 |
19İzleyin | CVE-2023-4588İstismar yok | File accessibility vulnerability in Delinea Secret Serverdelinea · secret server · CWE-552 | Orta4,9 | — | %0,3 | 6 Eyl 2023 |
17İzleyin | CVE-2024-25653İstismar yok | Broken Access Control in the Report functionality of Delinea PAM Secret Server 11.4 allows unprivileged users, when Unlimited Admin Mode is delinea · secret server · CWE-284 | Orta4,3 | — | %0,4 | 13 Mar 2024 |
17İzleyin | CVE-2024-5866İstismar yok | Arbitrary Directory Listing in Centrify PASdelinea · privileged access service · CWE-26 | Orta4,3 | — | %0,4 | 2 Tem 2024 |
16İzleyin | CVE-2025-6943İstismar yok | Secret Server version 11.7 and earlier is vulnerable to a SQL report creation vulnerability that allows an administrator to gain access to rdelinea · secret server · CWE-269 | Orta4,0 | — | %0,2 | 2 Tem 2025 |
- CVE-2024-3389135İzleyin
Delinea Secret Server before 11.7.000001 allows attackers to bypass authentication via the SOAP API in SecretServer/webservices/SSWebService
YüksekCVSS 8,8İstismar yokEPSS %1delinea · secret server28 Nis 2024
- CVE-2024-1290833İzleyin
Delinea addressed a reported case on Secret Server v11.7.31 (protocol handler version 6.0.3.26) where, within the protocol handler function,
YüksekCVSS 8,3İstismar yokEPSS %1delinea · secret server26 Ara 2024
- CVE-2024-2565233İzleyin
In Delinea PAM Secret Server 11.4, it is possible for a user assigned "Administer Reports" permission and/or with access to Report functiona
YüksekCVSS 8,4İstismar yokEPSS %1delinea · secret server13 Mar 2024
- CVE-2023-458928İzleyin
Insufficient verification of data authenticity vulnerability in Delinea Secret Server
YüksekCVSS 7,2İstismar yokEPSS %0delinea · secret server6 Eyl 2023
- CVE-2024-586526İzleyin
Arbitrary File Reading in Centrify PAS
OrtaCVSS 6,5İstismar yokEPSS %0delinea · privileged access service2 Tem 2024
- CVE-2024-2564926İzleyin
In Delinea PAM Secret Server 11.4, it is possible for an attacker (with Administrator access to the Secret Server machine) to read the follo
OrtaCVSS 6,7İstismar yokEPSS %0delinea · secret server13 Mar 2024
- CVE-2024-2565023İzleyin
Insecure key exchange between Delinea PAM Secret Server 11.4 and the Distributed Engine 8.4.3 allows a PAM administrator to obtain the Symme
OrtaCVSS 5,9İstismar yokEPSS %0delinea · distributed engine13 Mar 2024
- CVE-2024-2565121İzleyin
User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4.
OrtaCVSS 5,3İstismar yokEPSS %0delinea · secret server13 Mar 2024
- CVE-2025-1281021İzleyin
Failure in Password Rotation and Check-in Mechanism in Secret Server Allows Reuse of Credentials
OrtaCVSS 5,3İstismar yokEPSS %0delinea · secret server27 Oca 2026
- CVE-2023-458819İzleyin
File accessibility vulnerability in Delinea Secret Server
OrtaCVSS 4,9İstismar yokEPSS %0delinea · secret server6 Eyl 2023
- CVE-2024-2565317İzleyin
Broken Access Control in the Report functionality of Delinea PAM Secret Server 11.4 allows unprivileged users, when Unlimited Admin Mode is
OrtaCVSS 4,3İstismar yokEPSS %0delinea · secret server13 Mar 2024
- CVE-2024-586617İzleyin
Arbitrary Directory Listing in Centrify PAS
OrtaCVSS 4,3İstismar yokEPSS %0delinea · privileged access service2 Tem 2024
- CVE-2025-694316İzleyin
Secret Server version 11.7 and earlier is vulnerable to a SQL report creation vulnerability that allows an administrator to gain access to r
OrtaCVSS 4,0İstismar yokEPSS %0delinea · secret server2 Tem 2025