Octopus Server
cpe:2.3:a:octopus:octopus_server:*:*:*:*:*:*:*, +1 more
A vulnerability exists in certain versions of Octopus Server that allows the preview import feature to be used for file existence probing. This could enable an adversary to gather information about the presence of specific files on the server, potentially facilitating further attacks.
Exploitation of this vulnerability could lead to unauthorized information disclosure, allowing attackers to identify the existence of files that may be targeted in subsequent attacks against the server.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.