Unrated severityNVD Advisory· Published Jun 11, 2018· Updated Sep 16, 2024
CVE-2018-12089
CVE-2018-12089
Description
In Octopus Deploy version 2018.5.1 to 2018.5.7, a user with Task View is able to view a password for a Service Fabric Cluster, when the Service Fabric Cluster target is configured in Azure Active Directory security mode and a deployment is executed with OctopusPrintVariables set to True. This is fixed in 2018.6.0.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/OctopusDeploy/Issues/issues/4628mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.