Vulnerability Details CVE-2020-26161
In Octopus Deploy through 2020.4.2, an attacker could redirect users to an external site via a modified HTTP Host header.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 56.7%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 5.8
Products affected by CVE-2020-26161
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.0
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.1
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.10
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.11
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.12
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.2
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.3
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.4
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.5
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.6
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.7
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.8
-
cpe:2.3:a:octopus:octopus_deploy:2019.10.9
-
cpe:2.3:a:octopus:octopus_deploy:2019.11.0
-
cpe:2.3:a:octopus:octopus_deploy:2019.11.1
-
cpe:2.3:a:octopus:octopus_deploy:2019.11.2
-
cpe:2.3:a:octopus:octopus_deploy:2019.11.3
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.0
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.1
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.10
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.11
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.2
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.3
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.4
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.5
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.6
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.7
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.8
-
cpe:2.3:a:octopus:octopus_deploy:2019.12.9
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.0
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.1
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.2
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.3
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.4
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.5
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.6
-
cpe:2.3:a:octopus:octopus_deploy:2019.13.7
-
cpe:2.3:a:octopus:octopus_deploy:2019.8.2
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.0
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.1
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.2
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.3
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.4
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.5
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.6
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.7
-
cpe:2.3:a:octopus:octopus_deploy:2019.9.8
-
cpe:2.3:a:octopus:octopus_deploy:2020.1
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.0
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.1
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.10
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.11
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.12
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.13
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.14
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.15
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.16
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.17
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.18
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.19
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.2
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.20
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.21
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.22
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.3
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.4
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.5
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.6
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.7
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.8
-
cpe:2.3:a:octopus:octopus_deploy:2020.1.9
-
cpe:2.3:a:octopus:octopus_deploy:2020.2
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.0
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.1
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.10
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.11
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.12
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.13
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.14
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.15
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.16
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.17
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.18
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.19
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.2
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.20
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.3
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.4
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.5
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.6
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.7
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.8
-
cpe:2.3:a:octopus:octopus_deploy:2020.2.9
-
cpe:2.3:a:octopus:octopus_deploy:2020.3
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.0
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.1
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.10
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.2
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.3
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.4
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.5
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.6
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.7
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.8
-
cpe:2.3:a:octopus:octopus_deploy:2020.3.9
-
cpe:2.3:a:octopus:octopus_deploy:2020.4.0
-
cpe:2.3:a:octopus:octopus_deploy:2020.4.1
-
cpe:2.3:a:octopus:octopus_deploy:2020.4.2