CVE Published: 14/10/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: Octopus |
Vendor: Octopus Deploy |
Product: Octopus Server Status : PUBLISHED
CVE-2022-2780 Description
In affected versions of Octopus Server it is possible to use the Git Connectivity test function on the VCS project to initiate an SMB request resulting in the potential for an NTLM relay attack.