ZeroHour

CVE-2017-0925

CVSS 3.0
7.2 high
EPSS
<1%p57
Published
()
Modified
Description

Gitlab Enterprise Edition version 10.1.0 is vulnerable to an insufficiently protected credential issue in the project service integration API endpoint resulting in an information disclosure of plaintext password.

Vendors
gitlabdebian
Products
gitlab, debian linux
Weakness
CWE-522, CWE-319
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.