CVE-2018-5706

CVE-2018-5706

An issue was discovered in Octopus Deploy before 4.1.9. Any user with user editing permissions can modify teams to give themselves Administer System permissions even if they didn’t have them, as demonstrated by use of the RoleEdit or TeamEdit permission.

Source: CVE-2018-5706

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다