Security Advisory

CVE-2024-40595

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-10-24 00:00:00
Last updated 2024-10-24 14:14:18
Assigner mitre
State PUBLISHED

Description

An authentication-bypass issue in the RDP component of One Identity Safeguard for Privileged Sessions (SPS) On Premise before 7.5.1 (and LTS before 7.0.5.1) allows man-in-the-middle attackers to obtain access to privileged sessions on target resources by intercepting cleartext RDP protocol information.