CVE-2019-0971 vulnerability in Microsoft Products
Published on May 16, 2019
An information disclosure vulnerability exists when Azure DevOps Server and Microsoft Team Foundation Server do not properly sanitize a specially crafted authentication request to an affected server, aka 'Azure DevOps Server and Team Foundation Server Information Disclosure Vulnerability'.
Products Associated with CVE-2019-0971
stack.watch emails you whenever new vulnerabilities are published in Microsoft Team Foundation Server or Microsoft Azure Devops Server. Just hit a watch button to start following.
Affected Versions
Microsoft Team Foundation Server 2018:- Version Update 3.2 is affected.
- Version 2019 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.