Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 531

Количество 5 531

ubuntu логотип

CVE-2020-10083

около 6 лет назад

GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain conditions involving groups, project authorization changes were not being applied.

CVSS3: 9.1
EPSS: Низкий
nvd логотип

CVE-2020-10083

около 6 лет назад

GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain conditions involving groups, project authorization changes were not being applied.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2020-10083

около 6 лет назад

GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain con ...

CVSS3: 9.1
EPSS: Низкий
ubuntu логотип

CVE-2020-10082

около 6 лет назад

GitLab 12.2 through 12.8.1 allows Denial of Service. A denial of service vulnerability impacting the designs for public issues was discovered.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2020-10082

около 6 лет назад

GitLab 12.2 through 12.8.1 allows Denial of Service. A denial of service vulnerability impacting the designs for public issues was discovered.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2020-10082

около 6 лет назад

GitLab 12.2 through 12.8.1 allows Denial of Service. A denial of servi ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2020-10081

около 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-10081

около 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-10081

около 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally d ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-10080

около 6 лет назад

GitLab 8.3 through 12.8.1 allows Information Disclosure. It was possible for certain non-members to access the Contribution Analytics page of a private group.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2020-10080

около 6 лет назад

GitLab 8.3 through 12.8.1 allows Information Disclosure. It was possible for certain non-members to access the Contribution Analytics page of a private group.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2020-10080

около 6 лет назад

GitLab 8.3 through 12.8.1 allows Information Disclosure. It was possib ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2020-10079

около 6 лет назад

GitLab 7.10 through 12.8.1 has Incorrect Access Control. Under certain conditions where users should have been required to configure two-factor authentication, it was not being required.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2020-10079

около 6 лет назад

GitLab 7.10 through 12.8.1 has Incorrect Access Control. Under certain conditions where users should have been required to configure two-factor authentication, it was not being required.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2020-10079

около 6 лет назад

GitLab 7.10 through 12.8.1 has Incorrect Access Control. Under certain ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2020-10078

около 6 лет назад

GitLab 12.1 through 12.8.1 allows XSS. The merge request submission form was determined to have a stored cross-site scripting vulnerability.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-10078

около 6 лет назад

GitLab 12.1 through 12.8.1 allows XSS. The merge request submission form was determined to have a stored cross-site scripting vulnerability.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2020-10078

около 6 лет назад

GitLab 12.1 through 12.8.1 allows XSS. The merge request submission fo ...

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-10077

около 6 лет назад

GitLab EE 3.0 through 12.8.1 allows SSRF. An internal investigation revealed that a particular deprecated service was creating a server side request forgery risk.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2020-10077

около 6 лет назад

GitLab EE 3.0 through 12.8.1 allows SSRF. An internal investigation re ...

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-10083

GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain conditions involving groups, project authorization changes were not being applied.

CVSS3: 9.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10083

GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain conditions involving groups, project authorization changes were not being applied.

CVSS3: 9.1
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10083

GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain con ...

CVSS3: 9.1
0%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2020-10082

GitLab 12.2 through 12.8.1 allows Denial of Service. A denial of service vulnerability impacting the designs for public issues was discovered.

CVSS3: 5.3
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10082

GitLab 12.2 through 12.8.1 allows Denial of Service. A denial of service vulnerability impacting the designs for public issues was discovered.

CVSS3: 5.3
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10082

GitLab 12.2 through 12.8.1 allows Denial of Service. A denial of servi ...

CVSS3: 5.3
0%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2020-10081

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10081

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10081

GitLab before 12.8.2 has Incorrect Access Control. It was internally d ...

CVSS3: 6.5
0%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2020-10080

GitLab 8.3 through 12.8.1 allows Information Disclosure. It was possible for certain non-members to access the Contribution Analytics page of a private group.

CVSS3: 5.3
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10080

GitLab 8.3 through 12.8.1 allows Information Disclosure. It was possible for certain non-members to access the Contribution Analytics page of a private group.

CVSS3: 5.3
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10080

GitLab 8.3 through 12.8.1 allows Information Disclosure. It was possib ...

CVSS3: 5.3
0%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2020-10079

GitLab 7.10 through 12.8.1 has Incorrect Access Control. Under certain conditions where users should have been required to configure two-factor authentication, it was not being required.

CVSS3: 5.3
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10079

GitLab 7.10 through 12.8.1 has Incorrect Access Control. Under certain conditions where users should have been required to configure two-factor authentication, it was not being required.

CVSS3: 5.3
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10079

GitLab 7.10 through 12.8.1 has Incorrect Access Control. Under certain ...

CVSS3: 5.3
0%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2020-10078

GitLab 12.1 through 12.8.1 allows XSS. The merge request submission form was determined to have a stored cross-site scripting vulnerability.

CVSS3: 6.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10078

GitLab 12.1 through 12.8.1 allows XSS. The merge request submission form was determined to have a stored cross-site scripting vulnerability.

CVSS3: 6.1
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10078

GitLab 12.1 through 12.8.1 allows XSS. The merge request submission fo ...

CVSS3: 6.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-10077

GitLab EE 3.0 through 12.8.1 allows SSRF. An internal investigation revealed that a particular deprecated service was creating a server side request forgery risk.

CVSS3: 9.8
0%
Низкий
около 6 лет назад
debian логотип
CVE-2020-10077

GitLab EE 3.0 through 12.8.1 allows SSRF. An internal investigation re ...

CVSS3: 9.8
0%
Низкий
около 6 лет назад

Уязвимостей на страницу