Skip to content
Threat Feed

Vendor

Octopus Deploy

5 briefs RSS
medium advisory

Octopus Deploy File Path Manipulation and Potential RCE

A vulnerability in Octopus Deploy allows remote attackers to perform unauthorized file manipulation and potentially execute arbitrary code due to improper path validation.

Octopus Deploy vulnerability rce ci-cd
1t 1c
high advisory

Arbitrary Code Execution Vulnerability in Octopus Deploy Server

A vulnerability in Octopus Deploy Server allows a remote attacker to execute arbitrary code, potentially leading to full system compromise of the application instance.

Octopus Deploy Server vulnerability rce cicd
2t 1c
medium advisory

Information Disclosure Vulnerability in Octopus Deploy Server

An authenticated remote attacker can exploit a vulnerability in Octopus Deploy Server to perform unauthorized information disclosure.

Octopus Deploy Server vulnerability information-disclosure
1t 1c
high advisory

Octopus Deploy: Vulnerability Allows Security Bypass

A remote, authenticated attacker can exploit a vulnerability in Octopus Deploy to bypass security measures, potentially leading to unauthorized access or actions within the affected system.

Octopus Deploy vulnerability security-bypass defense-evasion deployment-automation
1t
medium advisory

PowerShell Script with Encryption/Decryption Capabilities

PowerShell scripts employing .NET cryptography APIs are used to encrypt data for impact or decrypt payloads for defense evasion.

Elastic Endpoint Security +1 powershell encryption defense-evasion windows
2r 3t