CyberRota Analysis
AI analysis pending.
CVE
CVE-2022-1881
Severity
MEDIUM
CVSS
5.3
EPSS
0.54%
Original NVD Description
In affected versions of Octopus Server an Insecure Direct Object Reference vulnerability exists where it is possible for a user to download Project Exports from a Project they do not have permissions to access. This vulnerability only impacts projects within the same Space.