← Back

CVE-2021-30183

nvd nist
Published: May 14, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Cleartext storage of sensitive information in multiple versions of Octopus Server where in certain situations when running import or export processes, the password used to encrypt and decrypt sensitive values would be written to the logs in plaintext.

Affected (3)

Products: Octopus: Server
1 product
Server
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Octopus
Before 2020.5.329
From 2020.6.0 to 2020.6.4847
From 2021.1.0 to 2021.1.6959

Timeline

No history available yet.