Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x79q-qfgr-wrvw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.10 in the Salesforce login integration that could be used by an attacker to create an account that bypassed domain restrictions and email verification requirements.

A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.10 in the Salesforce login integration that could be used by an attacker to create an account that bypassed domain restrictions and email verification requirements.

EPSS

Процентиль: 12%
0.00042
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.10 in the Salesforce login integration that could be used by an attacker to create an account that bypassed domain restrictions and email verification requirements.

CVSS3: 8.8
nvd
больше 5 лет назад

A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.10 in the Salesforce login integration that could be used by an attacker to create an account that bypassed domain restrictions and email verification requirements.

CVSS3: 8.8
debian
больше 5 лет назад

A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, ...

EPSS

Процентиль: 12%
0.00042
Низкий