VYPR
Medium severity4.3NVD Advisory· Published Nov 18, 2019· Updated Jun 17, 2026

CVE-2019-19084

CVE-2019-19084

Description

In Octopus Deploy 3.3.0 through 2019.10.4, an authenticated user with PackagePush permission to upload packages could upload a maliciously crafted package, triggering an exception that exposes underlying operating system details.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:octopus:octopus_deploy:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:octopus:octopus_deploy:*:*:*:*:*:*:*:*range: >=3.3.0,<=2019.10.4
    • (no CPE)range: 3.3.0 - 2019.10.4
  • Octopus Deploy/Octopus Deploydescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.