Описание
Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
gitlab | fixed | 10.5.5+dfsg-1 | package |
Примечания
https://about.gitlab.com/2018/01/16/gitlab-10-dot-3-dot-4-released/
EPSS
Процентиль: 54%
0.0031
Низкий
Связанные уязвимости
CVSS3: 8.8
ubuntu
около 7 лет назад
Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.
CVSS3: 8.8
nvd
около 7 лет назад
Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.
CVSS3: 8.8
github
около 3 лет назад
Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.
EPSS
Процентиль: 54%
0.0031
Низкий