Логотип exploitDog
bind:CVE-2023-5009
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-5009

Количество 4

Количество 4

nvd логотип

CVE-2023-5009

почти 2 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.2.7, all versions starting from 16.3 before 16.3.4. It was possible for an attacker to run pipeline jobs as an arbitrary user via scheduled security scan policies. This was a bypass of [CVE-2023-3932](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3932) showing additional impact.

CVSS3: 8.2
EPSS: Низкий
debian логотип

CVE-2023-5009

почти 2 года назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-g4c2-hhjc-4hgg

почти 2 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.2.7, all versions starting from 16.3 before 16.3.4. It was possible for an attacker to run pipeline jobs as an arbitrary user via scheduled security scan policies. This was a bypass of [CVE-2023-3932](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3932) showing additional impact.

CVSS3: 9.6
EPSS: Низкий
fstec логотип

BDU:2023-06078

почти 2 года назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостатками разграничения доступа, позволяющая нарушителю обойти ограничения безопасности и повысить свои привилегии

CVSS3: 9.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-5009

An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.2.7, all versions starting from 16.3 before 16.3.4. It was possible for an attacker to run pipeline jobs as an arbitrary user via scheduled security scan policies. This was a bypass of [CVE-2023-3932](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3932) showing additional impact.

CVSS3: 8.2
0%
Низкий
почти 2 года назад
debian логотип
CVE-2023-5009

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 8.2
0%
Низкий
почти 2 года назад
github логотип
GHSA-g4c2-hhjc-4hgg

An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.2.7, all versions starting from 16.3 before 16.3.4. It was possible for an attacker to run pipeline jobs as an arbitrary user via scheduled security scan policies. This was a bypass of [CVE-2023-3932](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3932) showing additional impact.

CVSS3: 9.6
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2023-06078

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостатками разграничения доступа, позволяющая нарушителю обойти ограничения безопасности и повысить свои привилегии

CVSS3: 9.6
0%
Низкий
почти 2 года назад

Уязвимостей на страницу