ZeroHour

CVE-2020-10955

CVSS 3.1
6.5 medium
EPSS
1%p62
Published
()
Modified
Description

GitLab EE/CE 11.1 through 12.9 is vulnerable to parameter tampering on an upload feature that allows an unauthorized user to read content available under specific folders.

Vendors
gitlabdebian
Products
gitlab, debian linux
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.