Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-13011

Опубликовано: 10 мар. 2020
Источник: nvd
CVSS3: 4.3
CVSS2: 4
EPSS Низкий

Описание

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 8.11.0 (включая) до 12.0.2 (включая)

EPSS

Процентиль: 22%
0.00069
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 5 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

CVSS3: 4.3
debian
больше 5 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12 ...

github
около 3 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

EPSS

Процентиль: 22%
0.00069
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-400