Vendor
Octopus Deploy File Path Manipulation and Potential RCE
1 TTP 1 CVEA vulnerability in Octopus Deploy allows remote attackers to perform unauthorized file manipulation and potentially execute arbitrary code due to improper path validation.
Arbitrary Code Execution Vulnerability in Octopus Deploy Server
2 TTPs 1 CVEA vulnerability in Octopus Deploy Server allows a remote attacker to execute arbitrary code, potentially leading to full system compromise of the application instance.
Information Disclosure Vulnerability in Octopus Deploy Server
1 TTP 1 CVEAn authenticated remote attacker can exploit a vulnerability in Octopus Deploy Server to perform unauthorized information disclosure.
Octopus Deploy: Vulnerability Allows Security Bypass
1 TTPA remote, authenticated attacker can exploit a vulnerability in Octopus Deploy to bypass security measures, potentially leading to unauthorized access or actions within the affected system.
PowerShell Script with Encryption/Decryption Capabilities
2 rules 3 TTPsPowerShell scripts employing .NET cryptography APIs are used to encrypt data for impact or decrypt payloads for defense evasion.