The share function in Thycotic Secret Server before 10.2.000019 mishandles the Back Button, leading to unintended redirections.
                
            References
                    | Link | Resource | 
|---|---|
| https://thycotic.com/products/secret-server/resources/advisories/thy-ss-009/ | Vendor Advisory | 
| https://thycotic.com/products/secret-server/resources/advisories/thy-ss-009/ | Vendor Advisory | 
Configurations
                    History
                    21 Nov 2024, 03:08
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://thycotic.com/products/secret-server/resources/advisories/thy-ss-009/ - Vendor Advisory | 
Information
                Published : 2017-07-29 05:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-11725
Mitre link : CVE-2017-11725
CVE.ORG link : CVE-2017-11725
JSON object : View
Products Affected
                thycotic
- secret_server
CWE
                
                    
                        
                        CWE-601
                        
            URL Redirection to Untrusted Site ('Open Redirect')
