Логотип exploitDog
bind:CVE-2023-6477
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-6477

Количество 5

Количество 5

ubuntu логотип

CVE-2023-6477

больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. When a user is assigned a custom role with admin_group_member permission, they may be able to make a group, other members or themselves Owners of that group, which may lead to privilege escalation.

CVSS3: 6.7
EPSS: Низкий
nvd логотип

CVE-2023-6477

больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. When a user is assigned a custom role with admin_group_member permission, they may be able to make a group, other members or themselves Owners of that group, which may lead to privilege escalation.

CVSS3: 6.7
EPSS: Низкий
debian логотип

CVE-2023-6477

больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-x645-349v-xwm6

больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. When a user is assigned a custom role with admin_group_member permission, they may be able to make a group, other members or themselves Owners of that group, which may lead to privilege escalation.

CVSS3: 6.7
EPSS: Низкий
fstec логотип

BDU:2024-01631

больше 1 года назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-6477

An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. When a user is assigned a custom role with admin_group_member permission, they may be able to make a group, other members or themselves Owners of that group, which may lead to privilege escalation.

CVSS3: 6.7
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-6477

An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. When a user is assigned a custom role with admin_group_member permission, they may be able to make a group, other members or themselves Owners of that group, which may lead to privilege escalation.

CVSS3: 6.7
0%
Низкий
больше 1 года назад
debian логотип
CVE-2023-6477

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.7
0%
Низкий
больше 1 года назад
github логотип
GHSA-x645-349v-xwm6

An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. When a user is assigned a custom role with admin_group_member permission, they may be able to make a group, other members or themselves Owners of that group, which may lead to privilege escalation.

CVSS3: 6.7
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-01631

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.7
0%
Низкий
больше 1 года назад

Уязвимостей на страницу