First published: Tue Feb 13 2024(Updated: )
Azure DevOps Server Remote Code Execution Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Azure DevOps Server | =2019.1.2 | |
Microsoft Azure DevOps Server | =2020.1.2 | |
Microsoft Azure DevOps Server | =2022.1 | |
Microsoft Azure DevOps Server | ||
Microsoft Azure DevOps Server | ||
Microsoft Azure DevOps Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-20667 is classified as a critical remote code execution vulnerability.
To fix CVE-2024-20667, users should apply the latest available patches for their version of Azure DevOps Server.
CVE-2024-20667 affects Azure DevOps Server versions 2019.1.2, 2020.1.2, and 2022.1.
CVE-2024-20667 is a remote code execution vulnerability that allows an attacker to execute arbitrary code on the affected server.
There are currently no known workarounds for CVE-2024-20667; applying patches is the recommended course of action.