PT-2019-15414 · Gitlab · Gitlab Ce/Ee+1

Publicado

2019-11-26

·

Atualizado

2019-11-27

·

CVE-2019-18457

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GitLab Community and Enterprise Edition versions 11.8 through 12.4
Description An issue was discovered in the handling of Security tokens, which has Insecure Permissions.
Recommendations For GitLab Community and Enterprise Edition versions 11.8 through 12.4, update to a version that includes a fix for the insecure permissions issue in handling Security tokens.

Correção

Improper Preservation of Permissions

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-18457

Produtos afetados

Gitlab
Gitlab Ce/Ee