CVE-2014-4861

The Remote Desktop Launcher in Thycotic Secret Server before 8.6.000010 does not properly cleanup a temporary file that contains an encrypted password once a session has ended.
Configurations

Configuration 1 (hide)

cpe:2.3:a:thycotic:secret_server:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:11

Type Values Removed Values Added
References () http://thycotic.com/products/secret-server/resources/advisories/cve-2014-4861/ - Vendor Advisory () http://thycotic.com/products/secret-server/resources/advisories/cve-2014-4861/ - Vendor Advisory

Information

Published : 2018-03-09 20:29

Updated : 2024-11-21 02:11


NVD link : CVE-2014-4861

Mitre link : CVE-2014-4861

CVE.ORG link : CVE-2014-4861


JSON object : View

Products Affected

thycotic

  • secret_server
CWE
CWE-255

Credentials Management Errors