CVE-2025-0525
11.02.2025, 10:15
In affected versions of Octopus Server the preview import feature could be leveraged to identify the existence of a target file. This could provide an adversary with information that may aid in further attacks against the server.Enginsight
Vendor | Product | Version |
---|---|---|
octopus | octopus_server | 2020.6.4592 ≤ 𝑥 < 2024.3.13007 |
octopus | octopus_server | 2024.4.401 ≤ 𝑥 < 2024.4.6995 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration