Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c5hv-rh39-2jjj

Опубликовано: 14 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

In affected versions of Octopus Server it is possible to use the Git Connectivity test function on the VCS project to initiate an SMB request resulting in the potential for an NTLM relay attack.

In affected versions of Octopus Server it is possible to use the Git Connectivity test function on the VCS project to initiate an SMB request resulting in the potential for an NTLM relay attack.

EPSS

Процентиль: 61%
0.00408
Низкий

8.1 High

CVSS3

Дефекты

CWE-294

Связанные уязвимости

CVSS3: 8.1
nvd
больше 3 лет назад

In affected versions of Octopus Server it is possible to use the Git Connectivity test function on the VCS project to initiate an SMB request resulting in the potential for an NTLM relay attack.

EPSS

Процентиль: 61%
0.00408
Низкий

8.1 High

CVSS3

Дефекты

CWE-294