Логотип exploitDog
bind:CVE-2020-16197
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-16197

Количество 2

Количество 2

nvd логотип

CVE-2020-16197

больше 5 лет назад

An issue was discovered in Octopus Deploy 3.4. A deployment target can be configured with an Account or Certificate that is outside the scope of the deployment target. An authorised user can potentially use a certificate that they are not in scope to use. An authorised user is also able to obtain certificate metadata by associating a certificate with certain resources that should fail scope validation.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-w4vm-8m9w-5qwm

больше 3 лет назад

An issue was discovered in Octopus Deploy 3.4. A deployment target can be configured with an Account or Certificate that is outside the scope of the deployment target. An authorised user can potentially use a certificate that they are not in scope to use. An authorised user is also able to obtain certificate metadata by associating a certificate with certain resources that should fail scope validation.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-16197

An issue was discovered in Octopus Deploy 3.4. A deployment target can be configured with an Account or Certificate that is outside the scope of the deployment target. An authorised user can potentially use a certificate that they are not in scope to use. An authorised user is also able to obtain certificate metadata by associating a certificate with certain resources that should fail scope validation.

CVSS3: 4.3
0%
Низкий
больше 5 лет назад
github логотип
GHSA-w4vm-8m9w-5qwm

An issue was discovered in Octopus Deploy 3.4. A deployment target can be configured with an Account or Certificate that is outside the scope of the deployment target. An authorised user can potentially use a certificate that they are not in scope to use. An authorised user is also able to obtain certificate metadata by associating a certificate with certain resources that should fail scope validation.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу