CVE-2024-40595

An authentication-bypass issue in the RDP component of One Identity Safeguard for Privileged Sessions (SPS) On Premise before 7.5.1 (and LTS before 7.0.5.1) allows man-in-the-middle attackers to obtain access to privileged sessions on target resources by intercepting cleartext RDP protocol information.
Configurations

No configuration.

History

No history.

Information

Published : 2024-10-24 06:15

Updated : 2024-10-25 12:56


NVD link : CVE-2024-40595

Mitre link : CVE-2024-40595

CVE.ORG link : CVE-2024-40595


JSON object : View

Products Affected

No product.

CWE
CWE-319

Cleartext Transmission of Sensitive Information