First published: Tue Oct 10 2023(Updated: )
Azure DevOps Server Elevation of Privilege Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Azure DevOps Server 2020.1.2 | ||
Microsoft Azure DevOps Server 2020.0.2 | ||
Microsoft Azure DevOps Server | =2020.0.2 | |
Microsoft Azure DevOps Server | =2020.1.2 | |
Microsoft Azure DevOps Server | =2022.0.1 | |
Microsoft Azure DevOps Server 2020.0.2 | ||
Microsoft Azure DevOps Server 2020.1.2 | ||
Microsoft Azure DevOps Server 2022.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-36561 is high with a value of 7.3.
The vulnerability affects Azure DevOps Server 2020.1.2, 2022.0.1, and 2020.0.2.
Yes, Microsoft has released a fix for the vulnerability. Please refer to the Microsoft Azure DevOps Server release notes for the appropriate version.
You can find more information about CVE-2023-36561 on the Microsoft Security Response Center website.
To protect your Azure DevOps Server, apply the available security patch provided by Microsoft.