Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2456

Опубликовано: 05 авг. 2022
Источник: nvd
CVSS3: 4.9
CVSS3: 2.7
EPSS Низкий

Описание

An issue has been discovered in GitLab CE/EE affecting all versions before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. It may be possible for malicious group or project maintainers to change their corresponding group or project visibility by crafting a malicious POST request.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия до 15.0.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 15.1.0 (включая) до 15.1.4 (исключая)
cpe:2.3:a:gitlab:gitlab:15.2:*:*:*:enterprise:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия до 15.0.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 15.1.0 (включая) до 15.1.4 (исключая)
cpe:2.3:a:gitlab:gitlab:15.2:*:*:*:community:*:*:*

EPSS

Процентиль: 51%
0.0028
Низкий

4.9 Medium

CVSS3

2.7 Low

CVSS3

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. It may be possible for malicious group or project maintainers to change their corresponding group or project visibility by crafting a malicious POST request.

CVSS3: 4.9
debian
больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions be ...

CVSS3: 2.7
github
больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. It may be possible for malicious group or project maintainers to change their corresponding group or project visibility by crafting a malicious POST request.

EPSS

Процентиль: 51%
0.0028
Низкий

4.9 Medium

CVSS3

2.7 Low

CVSS3

Дефекты

NVD-CWE-Other