Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r692-jg36-6v4p

Опубликовано: 05 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated users to gain privileges and clone arbitrary repositories.

The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated users to gain privileges and clone arbitrary repositories.

EPSS

Процентиль: 52%
0.00291
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
больше 5 лет назад

The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated users to gain privileges and clone arbitrary repositories.

CVSS3: 8.8
debian
больше 5 лет назад

The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4 ...

EPSS

Процентиль: 52%
0.00291
Низкий