Description
Improper Authentication vulnerability in Delinea Inc. Secret Server On-Prem (RPC Password Rotation modules).This issue affects Secret Server On-Prem: 11.8.1, 11.9.6, 11.9.25. A secret with "change password on check in" enabled automatically checks in even when the password change fails after reaching its retry limit. This leaves the secret in an inconsistent state with the wrong password. Remediation: Upgrade to 11.9.47 or later. The secret will remain checked out when the password change fails.
INFO
Published Date :
2026-01-27T19:46:04.677Z
Last Modified :
2026-01-27T20:51:42.590Z
Source :
Delinea
AFFECTED PRODUCTS
The following products are affected by CVE-2025-12810 vulnerability.
| Vendors | Products |
|---|---|
| Delinea |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-12810.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact