CVE-2017-15611
EUVD-2017-706319.10.2017, 08:29
In Octopus before 3.17.7, an authenticated user who was explicitly granted the permission to invite new users (aka UserInvite) can invite users to teams with escalated privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| octopus | octopus_deploy | 𝑥 ≤ 3.17.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration