CVE-2019-14525
05.08.2019, 12:15
In Octopus Deploy 2019.4.0 through 2019.6.x before 2019.6.6, and 2019.7.x before 2019.7.6, an authenticated system administrator is able to view sensitive values by visiting a server configuration page or making an API call.Enginsight
Vendor | Product | Version |
---|---|---|
octopus | octopus_deploy | 2019.4.0 ≤ 𝑥 < 2019.6.6 |
octopus | octopus_server | 2019.7.0 ≤ 𝑥 < 2019.7.6 |
𝑥
= Vulnerable software versions
References