Medium severity5.3NVD Advisory· Published Mar 14, 2024· Updated Jun 17, 2026
CVE-2024-25651
CVE-2024-25651
Description
User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4. This allows a remote attacker to determine whether a user is valid because of a difference in responses from the /oauth2/token endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:delinea:secret_server:11.4.000000:*:*:*:on-premises:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 11.4
Patches
Vulnerability mechanics
References
1- www.cvcn.gov.it/cvcn/cve/CVE-2024-25651nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.