CVE-2019-1072
- EPSS 24.11%
- Veröffentlicht 15.07.2019 19:15:17
- Zuletzt bearbeitet 21.11.2024 04:35:57
A remote code execution vulnerability exists when Azure DevOps Server and Team Foundation Server (TFS) improperly handle user input, aka 'Azure DevOps Server and Team Foundation Server Remote Code Execution Vulnerability'.
CVE-2019-0996
- EPSS 8.13%
- Veröffentlicht 12.06.2019 14:29:02
- Zuletzt bearbeitet 20.05.2025 18:15:34
A spoofing vulnerability exists in Azure DevOps Server when it improperly handles requests to authorize applications, resulting in a cross-site request forgery. An attacker who successfully exploited this vulnerability could bypass OAuth protections ...
CVE-2019-0979
- EPSS 0.84%
- Veröffentlicht 16.05.2019 19:29:04
- Zuletzt bearbeitet 21.11.2024 04:17:36
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user provided input, aka 'Azure DevOps Server and Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID i...
- EPSS 13.12%
- Veröffentlicht 16.05.2019 19:29:04
- Zuletzt bearbeitet 21.11.2024 04:17:35
An information disclosure vulnerability exists when Azure DevOps Server and Microsoft Team Foundation Server do not properly sanitize a specially crafted authentication request to an affected server, aka 'Azure DevOps Server and Team Foundation Serve...
CVE-2019-0872
- EPSS 0.84%
- Veröffentlicht 16.05.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 04:17:25
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user provided input, aka 'Azure DevOps Server and Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID i...
CVE-2019-0875
- EPSS 1.9%
- Veröffentlicht 09.04.2019 21:29:03
- Zuletzt bearbeitet 21.11.2024 04:17:25
An elevation of privilege vulnerability exists when Azure DevOps Server 2019 does not properly enforce project permissions, aka 'Azure DevOps Server Elevation of Privilege Vulnerability'.
CVE-2019-0874
- EPSS 0.83%
- Veröffentlicht 09.04.2019 21:29:03
- Zuletzt bearbeitet 21.11.2024 04:17:25
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting Vulnerability'.
CVE-2019-0857
- EPSS 16.38%
- Veröffentlicht 09.04.2019 21:29:02
- Zuletzt bearbeitet 21.11.2024 04:17:23
A spoofing vulnerability that could allow a security feature bypass exists in when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Spoofing Vulnerability'.
CVE-2019-0871
- EPSS 0.88%
- Veröffentlicht 09.04.2019 21:29:02
- Zuletzt bearbeitet 21.11.2024 04:17:25
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user provided input, aka 'Azure DevOps Server and Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID i...
CVE-2019-0870
- EPSS 0.88%
- Veröffentlicht 09.04.2019 21:29:02
- Zuletzt bearbeitet 21.11.2024 04:17:25
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user provided input, aka 'Azure DevOps Server and Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID i...