CVE-2023-4509

EUVD-2023-54364
It is possible for an API key to be logged in clear text in the audit log file after an invalid login attempt.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 MEDIUM
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
octopusoctopus_server
2018.9.0 ≤
𝑥
< 2023.4.296
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
octopusoctopus_server
2024.2 ≤
𝑥
< 2024.2.101
ADP