Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-55ff-j47x-6xcq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

EPSS

Процентиль: 85%
0.02675
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

CVSS3: 7.5
nvd
больше 5 лет назад

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

CVSS3: 7.5
debian
больше 5 лет назад

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v1 ...

EPSS

Процентиль: 85%
0.02675
Низкий