Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 336

Количество 5 336

nvd логотип

CVE-2017-0925

почти 8 лет назад

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2017-0925

почти 8 лет назад

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insuffici ...

CVSS3: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2017-0924

почти 8 лет назад

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-0924

почти 8 лет назад

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2017-0924

почти 8 лет назад

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2017-0923

почти 8 лет назад

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-0923

почти 8 лет назад

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2017-0923

почти 8 лет назад

Gitlab Community Edition version 9.1 is vulnerable to lack of input va ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2017-0922

почти 8 лет назад

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-0922

почти 8 лет назад

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-0922

почти 8 лет назад

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorizati ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2017-0921

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2017-0921

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2017-0921

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2017-0920

почти 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2017-0920

почти 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2017-0920

почти 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2017-0919

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the GitLab import component resulting in an attacker being able to perform operations under a group in which they were previously unauthorized.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-0919

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the GitLab import component resulting in an attacker being able to perform operations under a group in which they were previously unauthorized.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-0919

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-0925

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

CVSS3: 7.2
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0925

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insuffici ...

CVSS3: 7.2
0%
Низкий
почти 8 лет назад
ubuntu логотип
CVE-2017-0924

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0924

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0924

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input ...

CVSS3: 6.1
0%
Низкий
почти 8 лет назад
ubuntu логотип
CVE-2017-0923

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0923

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0923

Gitlab Community Edition version 9.1 is vulnerable to lack of input va ...

CVSS3: 6.1
0%
Низкий
почти 8 лет назад
ubuntu логотип
CVE-2017-0922

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0922

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0922

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorizati ...

CVSS3: 7.5
0%
Низкий
почти 8 лет назад
ubuntu логотип
CVE-2017-0921

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-0921

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2017-0921

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 8.1
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 4.3
0%
Низкий
почти 8 лет назад
ubuntu логотип
CVE-2017-0919

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the GitLab import component resulting in an attacker being able to perform operations under a group in which they were previously unauthorized.

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-0919

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the GitLab import component resulting in an attacker being able to perform operations under a group in which they were previously unauthorized.

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2017-0919

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 7.5
0%
Низкий
больше 7 лет назад

Уязвимостей на страницу