The Remote Desktop Launcher in Thycotic Secret Server before 8.6.000010 does not properly cleanup a temporary file that contains an encrypted password once a session has ended.
References
Link | Resource |
---|---|
http://thycotic.com/products/secret-server/resources/advisories/cve-2014-4861/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: certcc
Published: 2018-03-09T20:00:00
Updated: 2018-03-09T19:57:01
Reserved: 2014-07-10T00:00:00
Link: CVE-2014-4861
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-03-09T20:29:00.287
Modified: 2018-03-29T14:10:52.377
Link: CVE-2014-4861
JSON object: View
Redhat Information
No data.
CWE