Home

Description

Secret Server version 11.7 and earlier is vulnerable to a SQL report creation vulnerability that allows an administrator to gain access to restricted tables.

PUBLISHED Reserved 2025-06-30 | Published 2025-07-02 | Updated 2025-07-02 | Assigner Delinea




LOW: 3.8CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:L

Problem types

CWE-269 Improper Privilege Management

Product status

Default status
unaffected

Any version
affected

Credits

NCIA researchers finder

References

docs.delinea.com/...rver/release-notes/ss-rn-11-7-000060.htm release-notes

docs.delinea.com/...rver/release-notes/ss-rn-11-7-000061.htm release-notes

docs.delinea.com/...ge-log.htm?cshid=secret-server-changelog release-notes

trust.delinea.com vendor-advisory

cve.org (CVE-2025-6943)

nvd.nist.gov (CVE-2025-6943)

Download JSON