Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmgf-x64m-9gcw

Опубликовано: 09 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 2.7

Описание

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

EPSS

Процентиль: 32%
0.00126
Низкий

2.7 Low

CVSS3

Связанные уязвимости

CVSS3: 2.7
ubuntu
почти 3 года назад

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

CVSS3: 2.7
nvd
почти 3 года назад

An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A malicious project Maintainer may create a Project Access Token with Owner level privileges using a crafted request.

CVSS3: 2.7
debian
почти 3 года назад

An issue has been discovered in GitLab CE/EE affecting all versions be ...

EPSS

Процентиль: 32%
0.00126
Низкий

2.7 Low

CVSS3