cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-36561,https://securityvulnerability.io/vulnerability/CVE-2023-36561,Azure DevOps Server Elevation of Privilege Vulnerability,"An elevation of privilege vulnerability exists in Azure DevOps Server, enabling an attacker to gain elevated access rights. This vulnerability could allow an attacker to perform actions that would normally be restricted, potentially leading to a compromise of system integrity. It is crucial for organizations using affected versions of Azure DevOps Server to apply security updates to mitigate risks and secure their development environments.",Microsoft,"Azure Devops Server 2022.0.1,Azure Devops Server 2020.0.2,Azure Devops Server 2020.1.2",7.3,HIGH,0.00046999999904073775,false,,false,false,false,,,false,false,,2023-10-10T18:15:00.000Z,0 CVE-2023-33136,https://securityvulnerability.io/vulnerability/CVE-2023-33136,Azure DevOps Server Remote Code Execution Vulnerability,"A remote code execution vulnerability exists in Azure DevOps Server, which may allow an attacker to execute arbitrary code with the privileges of the service account. This flaw could be exploited through a specially crafted request, potentially leading to unauthorized access and system compromise. Organizations using affected versions are advised to apply the necessary updates to mitigate risk.",Microsoft,"Azure Devops Server 2020.0.2,Azure Devops Server,Azure Devops Server 2020.1.2,Azure Devops Server 2022.0.1,Azure Devops Server 2019.0.1",8.8,HIGH,0.0015200000489130616,false,,false,false,false,,,false,false,,2023-09-12T17:15:00.000Z,0 CVE-2023-38155,https://securityvulnerability.io/vulnerability/CVE-2023-38155,Azure DevOps Server Remote Code Execution Vulnerability,"A severe vulnerability has been identified in Azure DevOps Server, allowing unauthorized users to execute arbitrary code remotely. This issue arises due to improper validation of user input. An attacker exploiting this vulnerability can gain control of affected systems, potentially leading to data breaches or service disruptions. It is crucial for users of affected versions to apply patches and take preventive measures to mitigate such risks.",Microsoft,"Azure Devops Server 2019.0.1,Azure Devops Server 2022.0.1,Azure Devops Server 2020.1.2,Azure Devops Server,Azure Devops Server 2020.0.2",7,HIGH,0.016049999743700027,false,,false,false,false,,,false,false,,2023-09-12T17:15:00.000Z,0