CVE Vulnerabilities

CVE-2018-8529

Published: Nov 15, 2018 | Modified: Oct 03, 2019
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A remote code execution vulnerability exists when Team Foundation Server (TFS) does not enable basic authorization on the communication between the TFS and Search services, aka Team Foundation Server Remote Code Execution Vulnerability. This affects Team.

Affected Software

Name Vendor Start Version End Version
Team_foundation_server Microsoft 2018-1.1 (including) 2018-1.1 (including)
Team_foundation_server Microsoft 2018-3 (including) 2018-3 (including)

References