Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jcr-4r89-72r6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

EPSS

Процентиль: 23%
0.00075
Низкий

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
nvd
почти 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
debian
почти 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally d ...

EPSS

Процентиль: 23%
0.00075
Низкий

Дефекты

CWE-863