Описание
A denial of service in user's profile page is found starting with GitLab CE/EE 8.0 that allows attacker to reject access to their profile page via using a specially crafted username.
Ссылки
- Vendor Advisory
- Broken Link
- Permissions Required
- Vendor Advisory
- Broken Link
- Permissions Required
Уязвимые конфигурации
Одно из
Одно из
EPSS
3.5 Low
CVSS3
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
Связанные уязвимости
A denial of service in user's profile page is found starting with GitLab CE/EE 8.0 that allows attacker to reject access to their profile page via using a specially crafted username.
A denial of service in user's profile page is found starting with GitL ...
A denial of service in user's profile page is found starting with GitLab CE/EE 8.0 that allows attacker to reject access to their profile page via using a specially crafted username.
Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с ошибками при освобождении ресурсов, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
3.5 Low
CVSS3
4.3 Medium
CVSS3
4 Medium
CVSS2