📦 Secret Server

by Delinea

🔍 What is Secret Server?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-4589

CRITICAL CVSS 9.1 Sep 6, 2023

This vulnerability allows attackers with administrator access to Delinea Secret Server to install malicious software updates due to insufficient integrity verification. The update process lacks digita...

CVE-2024-33891

HIGH CVSS 8.8 Apr 28, 2024

This vulnerability allows attackers to bypass authentication in Delinea Secret Server via the SOAP API, potentially gaining administrative access. It affects Secret Server versions before 11.7.000001 ...

CVE-2024-25652

HIGH CVSS 7.6 Mar 14, 2024

This vulnerability in Delinea PAM Secret Server allows users with 'Administer Reports' permission or those in UNLIMITED ADMIN MODE to gain unauthorized access to remote sessions created by legitimate ...

CVE-2025-12810

MEDIUM CVSS 6.5 Jan 27, 2026

An improper authentication vulnerability in Delinea Secret Server On-Prem allows secrets with 'change password on check in' enabled to automatically check in even when password rotation fails. This le...

CVE-2024-12908

MEDIUM CVSS 6.9 Dec 26, 2024

This vulnerability in Delinea Secret Server's protocol handler allows remote code execution through URI comparison flaws before normalization. Attackers can trick users into visiting malicious pages o...