Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wfj3-6j6g-rpwx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.

In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.

EPSS

Процентиль: 83%
0.02119
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 5 лет назад

In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.

CVSS3: 9.8
nvd
больше 5 лет назад

In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.

CVSS3: 9.8
debian
больше 5 лет назад

In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient par ...

EPSS

Процентиль: 83%
0.02119
Низкий