CVE-2022-2782
9.1CRITICALIn affected versions of Octopus Server it is possible for a session token to be valid indefinitely due to improper validation of the session token parameters.
Publicado: 10/27/2022Actualizado: 5/7/2025
Descripción
In affected versions of Octopus Server it is possible for a session token to be valid indefinitely due to improper validation of the session token parameters.
Análisis IAImpulsado por IA
Productos Afectados
octopusoctopus_server
octopusoctopus_server
octopusoctopus_server
Referencias
- https://advisories.octopus.com/post/2022/sa2022-21/Vendor Advisory
- https://advisories.octopus.com/post/2022/sa2022-21/Vendor Advisory