First published: Tue Jun 09 2020(Updated: )
A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azure DevOps Server HTML Injection Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Azure DevOps Server | =2019-update1 | |
Microsoft Azure DevOps Server | =2019-update1.1 | |
Microsoft Azure DevOps Server | =2019.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1327 is a spoofing vulnerability in Microsoft Azure DevOps Server.
The vulnerability occurs when Microsoft Azure DevOps Server fails to properly handle web requests.
The severity of CVE-2020-1327 is medium with a severity value of 6.1.
Microsoft Azure DevOps Server versions 2019, update1, update1.1, and 2019.0.1 are affected.
Apply the necessary updates provided by Microsoft to fix CVE-2020-1327.