Fiche vulnérabilité
CVE-2021-31820 : faille élevée octopus octopus server (CVSS 7.5)
Description
In Octopus Server after version 2018.8.2 if the Octopus Server Web Request Proxy is configured with authentication, the password is shown in plaintext in the UI.
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 18 août 2021
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- octopus octopus server