CVE-2025-6943: Medium severity Thycotic Secret Server vulnerability
Published Jul 2, 2025
·Updated
Secret Server version 11.7 and earlier is vulnerable to a SQL report creation vulnerability that allows an administrator to gain access to restricted tables.
Affected Software
2 affected components
Thycotic Secret Server<11.7
Delinea Secret Server<11.7.000060
Event History
Jul 2, 2025
CVE Published
via MITRE·03:45 PM
Data Sourced
via MITRE·03:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-6943?
CVE-2025-6943 has been classified as a high severity vulnerability due to its potential for unauthorized access to sensitive data.
2
How do I fix CVE-2025-6943?
To mitigate CVE-2025-6943, upgrade Thycotic Secret Server to version 11.8 or later to close the SQL report creation vulnerability.
3
What are the implications of CVE-2025-6943?
CVE-2025-6943 allows administrators to access restricted tables, potentially exposing sensitive information if exploited.
4
Which versions of Secret Server are affected by CVE-2025-6943?
CVE-2025-6943 affects Thycotic Secret Server versions up to and including 11.7.
5
Who is vulnerable to CVE-2025-6943?
Organizations using Thycotic Secret Server version 11.7 and earlier are vulnerable to CVE-2025-6943.