Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jq3h-g8hj-7pmh

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Gitolite before 3.6.9 does not (in certain configurations involving @all or a regex) properly restrict access to a Git repository that is in the process of being migrated until the full set of migration steps has been completed. This can allow valid users to obtain unintended access.

Gitolite before 3.6.9 does not (in certain configurations involving @all or a regex) properly restrict access to a Git repository that is in the process of being migrated until the full set of migration steps has been completed. This can allow valid users to obtain unintended access.

EPSS

Процентиль: 46%
0.00232
Низкий

8.1 High

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 7 лет назад

Gitolite before 3.6.9 does not (in certain configurations involving @all or a regex) properly restrict access to a Git repository that is in the process of being migrated until the full set of migration steps has been completed. This can allow valid users to obtain unintended access.

CVSS3: 8.1
nvd
больше 7 лет назад

Gitolite before 3.6.9 does not (in certain configurations involving @all or a regex) properly restrict access to a Git repository that is in the process of being migrated until the full set of migration steps has been completed. This can allow valid users to obtain unintended access.

CVSS3: 8.1
debian
больше 7 лет назад

Gitolite before 3.6.9 does not (in certain configurations involving @a ...

suse-cvrf
больше 7 лет назад

Security update for gitolite

EPSS

Процентиль: 46%
0.00232
Низкий

8.1 High

CVSS3

Дефекты

CWE-362