First published: Tue Jun 13 2023(Updated: )
Azure DevOps Server Spoofing Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Azure DevOps Server | =2020.1.2 | |
Microsoft Azure DevOps Server | =2022 | |
Microsoft Azure DevOps Server | =2022.0.1 | |
Microsoft Azure DevOps Server 2020.1.2 | ||
Microsoft Azure DevOps Server 2022 | ||
Microsoft Azure DevOps Server 2022.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-21565 is high with a severity value of 7.1.
CVE-2023-21565 affects Azure DevOps Server 2020.1.2, Azure DevOps Server 2022, and Azure DevOps Server 2022.0.1.
The remedy for CVE-2023-21565 can be found at the following URLs: Microsoft Azure DevOps Server 2020.1.2 - [link](https://learn.microsoft.com/en-us/azure/devops/server/release-notes/azuredevops2020u1?view=azure-devops), Microsoft Azure DevOps Server 2022 - [link](https://learn.microsoft.com/azure/devops/server/release-notes/azuredevops2022?view=azure-devops), Microsoft Azure DevOps Server 2022.0.1 - [link](https://learn.microsoft.com/azure/devops/server/release-notes/azuredevops2022?view=azure-devops).
To fix CVE-2023-21565 on Azure DevOps Server, you should follow the remedy instructions provided by Microsoft for the specific version of Azure DevOps Server you are using.
You can find more information about CVE-2023-21565 at the following reference link: [Reference](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21565).