PT-2024-22989 · Unknown · Octopus Deploy

Jebi

·

Published

2024-04-02

·

Updated

2025-07-02

·

CVE-2024-2975

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Octopus Deploy (affected versions not specified)
Description A race condition was identified that allows for privilege escalation in certain configurations. This issue is reported to affect over 6,000 instances, according to available data. The exact nature of the configurations that make systems vulnerable is not specified, but the issue is considered critical.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Weakness Enumeration

Related Identifiers

CVE-2024-2975

Affected Products

Octopus Deploy