Azure DevOps Server and Team Foundation Services Spoofing Vulnerability - CVE-2020-17145ID: oval:org.secpod.oval:def:67695 | Date: (C)2020-12-09 (M)2024-01-08 |
Class: VULNERABILITY | Family: windows |
The host is installed with Microsoft Team Foundation server or Azure DevOps Server products and is prone to a spoofing vulnerability. A flaw is present in the application, which fails to handle unspecified vectors. Successful exploitation could allow an attacker to perform spoofing attacks.
Platform: |
Microsoft Windows 10 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Server 2016 |
Microsoft Windows Server 2019 |
Product: |
Microsoft Visual Studio Team Foundation Server 2015 Update 4.2 |
Microsoft Visual Studio Team Foundation Server 2017 Update 3.1 |
Microsoft Visual Studio Team Foundation Server 2018 Update 1.2 |
Microsoft Visual Studio Team Foundation Server 2018 Update 3.2 |
Azure DevOps Server 2019 |
Azure DevOps Server 2019 Update 1 |
Azure DevOps Server 2020 |