Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-4647

Опубликовано: 01 сент. 2023
Источник: nvd
CVSS3: 5.3
CVSS3: 7.5
EPSS Низкий

Описание

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which the projects API pagination can be skipped, potentially leading to DoS on certain instances.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 15.2.0 (включая) до 16.1.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 15.2.0 (включая) до 16.1.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 16.2 (включая) до 16.2.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 16.2 (включая) до 16.2.5 (исключая)
cpe:2.3:a:gitlab:gitlab:16.3.0:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:16.3.0:*:*:*:enterprise:*:*:*

EPSS

Процентиль: 44%
0.00216
Низкий

5.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-770
CWE-770

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which the projects API pagination can be skipped, potentially leading to DoS on certain instances.

CVSS3: 5.3
debian
больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5.3
github
больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which the projects API pagination can be skipped, potentially leading to DoS on certain instances.

EPSS

Процентиль: 44%
0.00216
Низкий

5.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-770
CWE-770