Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-0751

Опубликовано: 28 мар. 2022
Источник: debian
EPSS Низкий

Описание

Inaccurate display of Snippet files containing special characters in all versions of GitLab CE/EE allows an attacker to create Snippets with misleading content which could trick unsuspecting users into executing arbitrary commands

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlabfixed14.6.5+ds1-1experimentalpackage
gitlabfixed15.10.8+ds1-2package

Примечания

  • https://about.gitlab.com/releases/2022/02/25/critical-security-release-gitlab-14-8-2-released/

EPSS

Процентиль: 56%
0.00337
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 3 лет назад

Inaccurate display of Snippet files containing special characters in all versions of GitLab CE/EE allows an attacker to create Snippets with misleading content which could trick unsuspecting users into executing arbitrary commands

CVSS3: 6.5
nvd
около 3 лет назад

Inaccurate display of Snippet files containing special characters in all versions of GitLab CE/EE allows an attacker to create Snippets with misleading content which could trick unsuspecting users into executing arbitrary commands

CVSS3: 8.8
github
около 3 лет назад

Inaccurate display of Snippet files containing special characters in all versions of GitLab CE/EE allows an attacker to create Snippets with misleading content which could trick unsuspecting users into executing arbitrary commands

EPSS

Процентиль: 56%
0.00337
Низкий