PT-2019-12368 · Gitlab · Gitlab Ce/Ee+1

Xanbanx

·

Publicado

2019-09-09

·

Atualizado

2019-09-10

·

CVE-2019-11545

CVSS v3.1

4.3

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions GitLab Community Edition versions 11.9.x through 11.9.9 GitLab Community Edition versions 11.10.x through 11.10.1
Description An issue allows information disclosure when an issue is moved to a private project, leaking the private project namespace to unauthorized users with access to the original issue.
Recommendations For GitLab Community Edition versions 11.9.x through 11.9.9, update to version 11.9.10 or later. For GitLab Community Edition versions 11.10.x through 11.10.1, update to version 11.10.2 or later.

Exploit

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-11545

Produtos afetados

Gitlab
Gitlab Ce/Ee