microsoft team-foundation-server CVE-2020-0700 vulnerability in Microsoft Products
Published on March 12, 2020

A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting Vulnerability'.

NVD


Products Associated with CVE-2020-0700

stack.watch emails you whenever new vulnerabilities are published in Microsoft Team Foundation Server or Microsoft Azure Devops Server. Just hit a watch button to start following.

 
 

Affected Versions

Microsoft Azure DevOps Server: Microsoft Team Foundation Server 2018: Microsoft Team Foundation Server: Microsoft Azure DevOps Server 2019: Microsoft Azure DevOps Server 2019 Update 1.1:

Exploit Probability

EPSS
0.53%
Percentile
66.77%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.