Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5 943

Количество 5 943

ubuntu логотип

CVE-2018-20229

больше 7 лет назад

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-20229

больше 7 лет назад

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-20229

больше 7 лет назад

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-20144

больше 7 лет назад

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-20144

больше 7 лет назад

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-20144

больше 7 лет назад

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x be ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-19856

больше 7 лет назад

GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-19856

больше 7 лет назад

GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-19856

больше 7 лет назад

GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-19585

около 7 лет назад

GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project Mirroring when using the Git protocol.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2018-19585

около 7 лет назад

GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project Mirroring when using the Git protocol.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2018-19585

около 7 лет назад

GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11 ...

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2018-19584

около 7 лет назад

GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure direct object reference vulnerability that allows authenticated, but unauthorized, users to view members and milestone details of private groups.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-19584

около 7 лет назад

GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure direct object reference vulnerability that allows authenticated, but unauthorized, users to view members and milestone details of private groups.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-19584

около 7 лет назад

GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-19583

около 7 лет назад

GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, would log access tokens in the Workhorse logs, permitting administrators with access to the logs to see another user's token.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2018-19583

около 7 лет назад

GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, would log access tokens in the Workhorse logs, permitting administrators with access to the logs to see another user's token.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2018-19583

около 7 лет назад

GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4 ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2018-19582

около 7 лет назад

GitLab EE, versions 11.4 before 11.4.8 and 11.5 before 11.5.1, is affected by an insecure direct object reference vulnerability that permits an unauthorized user to publish the draft merge request comments of another user.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2018-19582

около 7 лет назад

GitLab EE, versions 11.4 before 11.4.8 and 11.5 before 11.5.1, is affected by an insecure direct object reference vulnerability that permits an unauthorized user to publish the draft merge request comments of another user.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-20229

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-20229

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-20229

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before ...

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-20144

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-20144

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-20144

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x be ...

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-19856

GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-19856

GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-19856

GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before ...

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-19585

GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project Mirroring when using the Git protocol.

CVSS3: 7.5
15%
Средний
около 7 лет назад
nvd логотип
CVE-2018-19585

GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project Mirroring when using the Git protocol.

CVSS3: 7.5
15%
Средний
около 7 лет назад
debian логотип
CVE-2018-19585

GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11 ...

CVSS3: 7.5
15%
Средний
около 7 лет назад
ubuntu логотип
CVE-2018-19584

GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure direct object reference vulnerability that allows authenticated, but unauthorized, users to view members and milestone details of private groups.

CVSS3: 7.5
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2018-19584

GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure direct object reference vulnerability that allows authenticated, but unauthorized, users to view members and milestone details of private groups.

CVSS3: 7.5
2%
Низкий
около 7 лет назад
debian логотип
CVE-2018-19584

GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 ...

CVSS3: 7.5
2%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2018-19583

GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, would log access tokens in the Workhorse logs, permitting administrators with access to the logs to see another user's token.

CVSS3: 6.5
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2018-19583

GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, would log access tokens in the Workhorse logs, permitting administrators with access to the logs to see another user's token.

CVSS3: 6.5
2%
Низкий
около 7 лет назад
debian логотип
CVE-2018-19583

GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4 ...

CVSS3: 6.5
2%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2018-19582

GitLab EE, versions 11.4 before 11.4.8 and 11.5 before 11.5.1, is affected by an insecure direct object reference vulnerability that permits an unauthorized user to publish the draft merge request comments of another user.

CVSS3: 4.3
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2018-19582

GitLab EE, versions 11.4 before 11.4.8 and 11.5 before 11.5.1, is affected by an insecure direct object reference vulnerability that permits an unauthorized user to publish the draft merge request comments of another user.

CVSS3: 4.3
1%
Низкий
около 7 лет назад

Уязвимостей на страницу