In affected versions of Octopus Server it was identified that a session cookie could be used as the CSRF token

Subscriptions

Vendors Products
Octopus Subscribe
Octopus Server Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-35024 In affected versions of Octopus Server it was identified that a session cookie could be used as the CSRF token
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Octopus

Published:

Updated: 2024-08-03T00:46:04.456Z

Reserved: 2022-08-11T00:00:00.000Z

Link: CVE-2022-2783

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-10-06T18:15:58.980

Modified: 2024-11-21T07:01:41.533

Link: CVE-2022-2783

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses