Aller au contenu

Fiche vulnérabilité

CVE-2021-31817 : faille élevée octopus server (CVSS 7.5)

Description

When configuring Octopus Server if it is configured with an external SQL database, on initial configuration the database password is written to the OctopusServer.txt log file in plaintext.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
8 juil. 2021
Dernière mise à jour
17 juin 2026

Produits concernés

  • octopus server

Références

Rechercher une autre vulnérabilité dans la base CVE