Описание
An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to commit to projects even from a restricted IP address.
Ссылки
- Vendor Advisory
- Issue TrackingVendor Advisory
- Permissions RequiredThird Party Advisory
- Vendor Advisory
- Issue TrackingVendor Advisory
- Permissions RequiredThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 12.0.0 (включая) до 15.10.5 (исключая)Версия от 15.11.0 (включая) до 15.11.1 (исключая)
Одно из
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 78%
0.01107
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 6.5
debian
больше 2 лет назад
An issue has been discovered in GitLab EE affecting all versions start ...
CVSS3: 6.5
github
больше 2 лет назад
An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to commit to projects even from a restricted IP address.
EPSS
Процентиль: 78%
0.01107
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-noinfo