← Back

CVE-2025-0513

nvd nist
Published: Feb 11, 2025Modified: Jun 17, 2026

JSON object

Loading...
1.8
Vector
CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: security@octopus.com (Secondary)

Description

In affected versions of Octopus Server error messages were handled unsafely on the error page. If an adversary could control any part of the error message they could embed code which may impact the user viewing the error message.

Affected (2)

1 product
Octopus Server
Configuration A
2 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Octopus
From 2024.3.164 to 2024.3.12985
From 2024.4.401 to 2024.4.6962
Running on/withPlatform Versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions

References (1)

Source: security@octopus.com
Broken Link

Timeline

No history available yet.