Логотип exploitDog
bind:CVE-2023-3906
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-3906

Количество 3

Количество 3

nvd логотип

CVE-2023-3906

около 2 лет назад

An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft image urls which bypass the asset proxy.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2023-3906

около 2 лет назад

An input validation issue in the asset proxy in GitLab EE, affecting a ...

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-x2v6-6q9m-6qx9

около 2 лет назад

An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft image urls which bypass the asset proxy.

CVSS3: 3.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-3906

An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft image urls which bypass the asset proxy.

CVSS3: 3.5
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-3906

An input validation issue in the asset proxy in GitLab EE, affecting a ...

CVSS3: 3.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-x2v6-6q9m-6qx9

An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft image urls which bypass the asset proxy.

CVSS3: 3.5
0%
Низкий
около 2 лет назад

Уязвимостей на страницу