CVE-2022-2416
02.08.2023, 06:15
In affected versions of Octopus Deploy it is possible for a low privileged guest user to craft a request that allows enumeration/recon of an environment.
Vendor | Product | Version |
---|---|---|
octopus | octopus_server | 2019.4.0 ≤ 𝑥 < 2022.4.9997 |
octopus | octopus_server | 2023.1.4189 ≤ 𝑥 < 2023.1.10235 |
octopus | octopus_server | 2023.2.2028 ≤ 𝑥 < 2023.2.10545 |
𝑥
= Vulnerable software versions