Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 501

Количество 5 501

debian логотип

CVE-2017-0927

около 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2017-0926

около 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2017-0926

около 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2017-0926

около 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2017-0925

около 8 лет назад

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2017-0925

около 8 лет назад

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2017-0925

около 8 лет назад

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insuffici ...

CVSS3: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2017-0924

около 8 лет назад

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-0924

около 8 лет назад

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2017-0924

около 8 лет назад

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2017-0923

около 8 лет назад

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-0923

около 8 лет назад

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2017-0923

около 8 лет назад

Gitlab Community Edition version 9.1 is vulnerable to lack of input va ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2017-0922

около 8 лет назад

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-0922

около 8 лет назад

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-0922

около 8 лет назад

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorizati ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2017-0921

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2017-0921

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2017-0921

больше 7 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2017-0920

около 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2017-0927

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 6.5
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-0926

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.

CVSS3: 8.8
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-0926

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.

CVSS3: 8.8
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-0926

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 8.8
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-0925

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

CVSS3: 7.2
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-0925

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

CVSS3: 7.2
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-0925

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insuffici ...

CVSS3: 7.2
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-0924

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-0924

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the labels component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-0924

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input ...

CVSS3: 6.1
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-0923

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-0923

Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.

CVSS3: 6.1
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-0923

Gitlab Community Edition version 9.1 is vulnerable to lack of input va ...

CVSS3: 6.1
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-0922

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-0922

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorization bypass issue in the GitLab Projects::BoardsController component resulting in an information disclosure on any board object.

CVSS3: 7.5
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-0922

Gitlab Enterprise Edition version 10.3 is vulnerable to an authorizati ...

CVSS3: 7.5
0%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-0921

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-0921

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an unverified password change issue in the PasswordsController component resulting in potential account takeover if a victim's session is compromised.

CVSS3: 8.1
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2017-0921

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 8.1
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
0%
Низкий
около 8 лет назад

Уязвимостей на страницу