CVE Vulnerabilities

CVE-2019-15698

Published: Aug 27, 2019 | Modified: Jul 27, 2022
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

In Octopus Deploy 2019.7.3 through 2019.7.9, in certain circumstances, an authenticated user with VariableView permissions could view sensitive values. This is fixed in 2019.7.10.

Affected Software

Name Vendor Start Version End Version
Octopus_server Octopus 2019.7.3 (including) 2019.7.9 (including)

References