Логотип exploitDog
bind:CVE-2022-3870
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3870

Количество 4

Количество 4

ubuntu логотип

CVE-2022-3870

около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. GitLab allows unauthenticated users to download user avatars using the victim's user ID, on private instances that restrict public level visibility.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-3870

около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. GitLab allows unauthenticated users to download user avatars using the victim's user ID, on private instances that restrict public level visibility.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2022-3870

около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-5jj4-fh62-42vp

около 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. GitLab allows unauthenticated users to download user avatars using the victim's user ID, on private instances that restrict public level visibility.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-3870

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. GitLab allows unauthenticated users to download user avatars using the victim's user ID, on private instances that restrict public level visibility.

CVSS3: 5.3
2%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-3870

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. GitLab allows unauthenticated users to download user avatars using the victim's user ID, on private instances that restrict public level visibility.

CVSS3: 5.3
2%
Низкий
около 3 лет назад
debian логотип
CVE-2022-3870

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 5.3
2%
Низкий
около 3 лет назад
github логотип
GHSA-5jj4-fh62-42vp

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. GitLab allows unauthenticated users to download user avatars using the victim's user ID, on private instances that restrict public level visibility.

CVSS3: 5.3
2%
Низкий
около 3 лет назад

Уязвимостей на страницу