Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p4m9-pfr4-hjwj

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In Octopus before 3.17.7, an authenticated user who was explicitly granted the permission to invite new users (aka UserInvite) can invite users to teams with escalated privileges.

In Octopus before 3.17.7, an authenticated user who was explicitly granted the permission to invite new users (aka UserInvite) can invite users to teams with escalated privileges.

EPSS

Процентиль: 34%
0.00141
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 6.5
nvd
больше 8 лет назад

In Octopus before 3.17.7, an authenticated user who was explicitly granted the permission to invite new users (aka UserInvite) can invite users to teams with escalated privileges.

EPSS

Процентиль: 34%
0.00141
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-732