Логотип exploitDog
bind:CVE-2023-4002
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-4002

Количество 3

Количество 3

nvd логотип

CVE-2023-4002

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 14.1 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. It was possible for EE-licensed users to link any security policy project by its ID to projects or groups the user has access to, potentially revealing the security projects's configured security policies.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-4002

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-fh9c-h28h-pf65

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 14.1 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. It was possible for EE-licensed users to link any security policy project by its ID to projects or groups the user has access to, potentially revealing the security projects's configured security policies.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-4002

An issue has been discovered in GitLab EE affecting all versions starting from 14.1 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. It was possible for EE-licensed users to link any security policy project by its ID to projects or groups the user has access to, potentially revealing the security projects's configured security policies.

CVSS3: 5.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4002

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 5.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-fh9c-h28h-pf65

An issue has been discovered in GitLab EE affecting all versions starting from 14.1 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. It was possible for EE-licensed users to link any security policy project by its ID to projects or groups the user has access to, potentially revealing the security projects's configured security policies.

CVSS3: 5.3
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу