Логотип exploitDog
bind:CVE-2018-17455
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-17455

Количество 5

Количество 5

ubuntu логотип

CVE-2018-17455

около 2 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-17455

около 2 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-17455

около 2 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11 ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-f4ff-rc49-g8hc

около 2 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2023-02425

около 2 лет назад

Уязвимость функции Merge request approvals программной платформы на базе git для совместной работы над кодом GitLab, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 3.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-17455

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2018-17455

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
debian логотип
CVE-2018-17455

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11 ...

CVSS3: 7.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-f4ff-rc49-g8hc

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-02425

Уязвимость функции Merge request approvals программной платформы на базе git для совместной работы над кодом GitLab, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 3.5
0%
Низкий
около 2 лет назад

Уязвимостей на страницу