Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

fstec логотип

BDU:2026-06062

Опубликовано: 04 мар. 2026
Источник: fstec
CVSS3: 8.8
CVSS2: 9
EPSS Средний

Описание

Уязвимость корпоративной версии платформы GitHub Enterprise Server связана с непринятием мер по очистке данных на управляющем уровне. Эксплуатация уязвимостей может позволить нарушителю, действующему удаленно, выполнить произвольный код

Вендор

GitHub Inc

Наименование ПО

GitHub Enterprise Server

Версия ПО

до 3.14.25 (GitHub Enterprise Server)
до 3.15.20 (GitHub Enterprise Server)
до 3.16.16 (GitHub Enterprise Server)
до 3.17.13 (GitHub Enterprise Server)
до 3.18.7 (GitHub Enterprise Server)
до 3.19.4 (GitHub Enterprise Server)

Тип ПО

Сетевое средство

Операционные системы и аппаратные платформы

-

Уровень опасности уязвимости

Высокий уровень опасности (базовая оценка CVSS 2.0 составляет 9)
Высокий уровень опасности (базовая оценка CVSS 3.1 составляет 8,8)

Возможные меры по устранению уязвимости

Использование рекомендаций производителя:
https://github.blog/security/securing-the-git-push-pipeline-responding-to-a-critical-remote-code-execution-vulnerability/
https://docs.github.com/en/enterprise-server@3.14 /admin/release-notes#3.14.25
https://docs.github.com/en/enterprise-server@3.15 /admin/release-notes#3.15.20
https://docs.github.com/en/enterprise-server@3.16 /admin/release-notes#3.16.16
https://docs.github.com/en/enterprise-server@3.17 /admin/release-notes#3.17.13
https://docs.github.com/en/enterprise-server@3.18 /admin/release-notes#3.18.7
https://docs.github.com/en/enterprise-server@3.19 /admin/release-notes#3.19.4

Статус уязвимости

Подтверждена производителем

Наличие эксплойта

Существует в открытом доступе

Информация об устранении

Уязвимость устранена

Идентификаторы других систем описаний уязвимостей

EPSS

Процентиль: 98%
0.35858
Средний

8.8 High

CVSS3

9 Critical

CVSS2

Связанные уязвимости

CVSS3: 8.8
nvd
5 месяцев назад

An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an attacker with push access to a repository to achieve remote code execution on the instance. During a git push operation, user-supplied push option values were not properly sanitized before being included in internal service headers. Because the internal header format used a delimiter character that could also appear in user input, an attacker could inject additional metadata fields through crafted push option values. This vulnerability was reported via the GitHub Bug Bounty program and has been fixed in GitHub Enterprise Server versions 3.14.25, 3.15.20, 3.16.16, 3.17.13, 3.18.7 and 3.19.4.

CVSS3: 8.8
github
5 месяцев назад

An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an attacker with push access to a repository to achieve remote code execution on the instance. During a git push operation, user-supplied push option values were not properly sanitized before being included in internal service headers. Because the internal header format used a delimiter character that could also appear in user input, an attacker could inject additional metadata fields through crafted push option values. This vulnerability was reported via the GitHub Bug Bounty program and has been fixed in GitHub Enterprise Server versions 3.14.24, 3.15.19, 3.16.15, 3.17.12, 3.18.6 and 3.19.3.

EPSS

Процентиль: 98%
0.35858
Средний

8.8 High

CVSS3

9 Critical

CVSS2