ZeroHour

CVE-2018-14364

PoC ×2
CVSS 3.0
9.8 critical
EPSS
50%p99
Published
()
Modified
Description

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write access and resultant remote code execution via the GitLab projects import component.

Vendors
gitlab
Products
gitlab
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.