Delinea Secret Server
cpe:2.3:a:delinea:secret_server:*:*:*:*:*:*:*
- <= 11.7.49
An authorization vulnerability has been identified in the distributed engine of Delinea Secret Server, affecting versions through 11.7.49. This vulnerability allows an attacker to impersonate another distributed engine during the initial authorization event.
Exploitation of this vulnerability could lead to unauthorized impersonation of distributed engines, potentially allowing for unauthorized actions or access within the Secret Server environment.
To reproduce this vulnerability, an attacker would need to initiate an authorization event with the distributed engine. This could be done by manipulating the authorization process to impersonate another engine, taking advantage of the vulnerability during the initial authorization phase.
Users are advised to upgrade to Secret Server version 11.7.60 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.