Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-12430

Опубликовано: 10 мар. 2020
Источник: debian
EPSS Низкий

Описание

An issue was discovered in GitLab Community and Enterprise Edition 11.11. A specially crafted payload would allow an authenticated malicious user to execute commands remotely through the repository download feature. It allows Command Injection.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlabnot-affectedpackage

Примечания

  • https://about.gitlab.com/2019/06/03/security-release-gitlab-11-dot-11-dot-1-released/

EPSS

Процентиль: 87%
0.03667
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.11. A specially crafted payload would allow an authenticated malicious user to execute commands remotely through the repository download feature. It allows Command Injection.

CVSS3: 8.8
nvd
больше 5 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.11. A specially crafted payload would allow an authenticated malicious user to execute commands remotely through the repository download feature. It allows Command Injection.

github
около 3 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.11. A specially crafted payload would allow an authenticated malicious user to execute commands remotely through the repository download feature. It allows Command Injection.

EPSS

Процентиль: 87%
0.03667
Низкий