CVE-2020-12286

CVE-2020-12286

In Octopus Deploy before 2019.12.9 and 2020 before 2020.1.12, the TaskView permission is not scoped to any dimension. For example, a scoped user who is scoped to only one tenant can view server tasks scoped to any other tenant.

Source: CVE-2020-12286

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다