First published: Thu Oct 07 2021(Updated: )
When Octopus Server is installed using a custom folder location, folder ACLs are not set correctly and could lead to an unprivileged user using DLL side-loading to gain privileged access.
Credit: security@octopus.com
Affected Software | Affected Version | How to fix |
---|---|---|
Octopus Octopus Deploy | >=0.9<2020.4.229 | |
Octopus Octopus Server | >=2020.5.0<2020.5.256 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.