Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmgf-x64m-9gcw

Опубликовано: 09 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 2.7

Описание

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

EPSS

Процентиль: 88%
0.03934
Низкий

2.7 Low

CVSS3

Связанные уязвимости

CVSS3: 2.7
ubuntu
около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

CVSS3: 2.7
nvd
около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

CVSS3: 2.7
debian
около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions be ...

EPSS

Процентиль: 88%
0.03934
Низкий

2.7 Low

CVSS3