CVE-2021-34679: Critical severity thycotic password reset server vulnerability
Published Jun 11, 2021
·Updated
Thycotic Password Reset Server before 5.3.0 allows credential disclosure.
Affected Software
1 affected component
Thycotic Password Reset Server<5.3.0
Event History
Jun 11, 2021
CVE Published
via MITRE·08:26 PM
Data Sourced
via MITRE·08:26 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2021-34679?
CVE-2021-34679 is classified as a medium severity vulnerability due to the potential for credential disclosure.
2
How do I fix CVE-2021-34679?
To fix CVE-2021-34679, upgrade Thycotic Password Reset Server to version 5.3.0 or later.
3
What does CVE-2021-34679 exploit?
CVE-2021-34679 exploits a flaw in Thycotic Password Reset Server that allows unauthorized access to sensitive credentials.
4
Which versions of Thycotic Password Reset Server are affected by CVE-2021-34679?
CVE-2021-34679 affects all versions of Thycotic Password Reset Server prior to 5.3.0.
5
Can CVE-2021-34679 lead to data breaches?
Yes, CVE-2021-34679 could potentially lead to data breaches due to unauthorized credential disclosure.