Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-4201

Опубликовано: 27 янв. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 3.5

Описание

A blind SSRF in GitLab CE/EE affecting all from 11.3 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 allows an attacker to connect to local addresses when configuring a malicious GitLab Runner.

РелизСтатусПримечание
bionic

DNE

esm-apps/xenial

ignored

not maintainable
esm-infra/focal

DNE

focal

DNE

jammy

DNE

kinetic

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

Ссылки на источники

EPSS

Процентиль: 39%
0.00177
Низкий

3.5 Low

CVSS3

Связанные уязвимости

CVSS3: 3.5
nvd
около 3 лет назад

A blind SSRF in GitLab CE/EE affecting all from 11.3 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 allows an attacker to connect to local addresses when configuring a malicious GitLab Runner.

CVSS3: 3.5
debian
около 3 лет назад

A blind SSRF in GitLab CE/EE affecting all from 11.3 prior to 15.4.6, ...

CVSS3: 5.3
github
около 3 лет назад

A blind SSRF in GitLab CE/EE affecting all from 11.3 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 allows an attacker to connect to local addresses when configuring a malicious GitLab Runner.

EPSS

Процентиль: 39%
0.00177
Низкий

3.5 Low

CVSS3