Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2hjx-qmr7-gg4r

Опубликовано: 11 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

An authorization logic error in the External Status Check API in GitLab EE affecting all versions starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allowed a user to update the status of the check via an API call

An authorization logic error in the External Status Check API in GitLab EE affecting all versions starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allowed a user to update the status of the check via an API call

EPSS

Процентиль: 47%
0.00244
Низкий

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 4 года назад

An authorization logic error in the External Status Check API in GitLab EE affecting all versions starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allowed a user to update the status of the check via an API call

CVSS3: 4.3
redhat
почти 4 года назад

An authorization logic error in the External Status Check API in GitLab EE affecting all versions starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allowed a user to update the status of the check via an API call

CVSS3: 4.3
nvd
почти 4 года назад

An authorization logic error in the External Status Check API in GitLab EE affecting all versions starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allowed a user to update the status of the check via an API call

CVSS3: 4.3
debian
почти 4 года назад

An authorization logic error in the External Status Check API in GitLa ...

EPSS

Процентиль: 47%
0.00244
Низкий

Дефекты

CWE-863