CVE Database
/

CVE-2019-1306

Back to search

CVE-2019-1306

Published: Sep 11, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A remote code execution vulnerability exists when Azure DevOps Server (ADO) and Team Foundation Server (TFS) fail to validate input properly, aka 'Azure DevOps and Team Foundation Server Remote Code Execution Vulnerability'.

VendorProductVersions

Microsoft

Team Foundation Server 2018

affected
Update 3.2

Microsoft

Azure DevOps Server

affected
2019.0.1

Microsoft

Azure DevOps Server 2019 Update 1

affected
unspecified

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now