Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-662c-cj8q-qc4g

Опубликовано: 08 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.2

Описание

An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 before 17.2.2 that allowed bypassing the password re-entry requirement to approve a policy.

An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 before 17.2.2 that allowed bypassing the password re-entry requirement to approve a policy.

EPSS

Процентиль: 8%
0.00034
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-287
CWE-305

Связанные уязвимости

CVSS3: 4.2
ubuntu
около 1 года назад

An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 before 17.2.2 that allowed bypassing the password re-entry requirement to approve a policy.

CVSS3: 4.2
nvd
около 1 года назад

An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 before 17.2.2 that allowed bypassing the password re-entry requirement to approve a policy.

CVSS3: 4.2
debian
около 1 года назад

An issue was discovered in GitLab EE starting from version 16.7 before ...

CVSS3: 4.2
fstec
около 1 года назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с обходом аутентификации, позволяющая нарушителю обойти ограничения безопасности

EPSS

Процентиль: 8%
0.00034
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-287
CWE-305