[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252212

 
 

909

 
 

196748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Privilege escalation vulnerability in GitLab CE/EE - CVE-2022-1999 (rpm)

ID: oval:org.secpod.oval:def:84690Date: (C)2022-10-04   (M)2023-08-03
Class: VULNERABILITYFamily: unix




The host is installed with GitLab CE/EE 8.13 before 14.10.5, 15.0 before 15.0.4 or 15.1 before 15.1.1 and is prone to a privilege escalation vulnerability. A flaw is present in the application, which fails to properly handle issues in unspecified vectors. On successful exploitation, under certain conditions, using the REST API an unprivileged user was able to change labels description.

Platform:
Linux
Product:
gitlab-ce
gitlab-ee
Reference:
CVE-2022-1999
CVE    1
CVE-2022-1999

© SecPod Technologies