GitLab是美国GitLab公司的一款使用Ruby on Rails开发的、自托管的、Git(版本控制系统)项目仓库应用程序。该程序可用于查阅项目的文件内容、提交历史、Bug列表等。 GitLab(社区版和企业版)11.11.2版本至11.11.7版本、12.0.0版本至12.0.4版本和12.1.0版本至12.1.2版本中存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者可利用该漏洞执行客户端代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | GitLab CE/EE | Affects GitLab CE/EE 11.10 and later. Fixed in 12.1.2, 12.0.4, and 11.11.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-12464 | LibreNMS 路径遍历漏洞 | |
| CVE-2019-16159 | BIRD Internet Routing Daemon 缓冲区错误漏洞 | |
| CVE-2019-16165 | GNU cflow 资源管理错误漏洞 | |
| CVE-2019-16161 | Onigmo 代码问题漏洞 | |
| CVE-2019-16168 | SQLite 数字错误漏洞 | |
| CVE-2019-5483 | Seneca 安全漏洞 | |
| CVE-2019-5461 | GitHub 输入验证错误漏洞 | |
| CVE-2019-5463 | GitLab 授权问题漏洞 | |
| CVE-2019-16162 | Onigmo 缓冲区错误漏洞 | |
| CVE-2019-12465 | LibreNMS SQL注入漏洞 | |
| CVE-2019-10670 | LibreNMS 跨站脚本漏洞 | |
| CVE-2019-12463 | LibreNMS 代码注入漏洞 | |
| CVE-2019-10671 | LibreNMS SQL注入漏洞 | |
| CVE-2019-10668 | LibreNMS 授权问题漏洞 | |
| CVE-2019-10667 | LibreNMS 信息泄露漏洞 | |
| CVE-2019-10666 | LibreNMS 代码注入漏洞 | |
| CVE-2019-10665 | LibreNMS 注入漏洞 | |
| CVE-2019-15895 | WordPress Search Exclude插件访问控制错误漏洞 | |
| CVE-2019-15639 | Digium Asterisk 输入验证错误漏洞 | |
| CVE-2019-10669 | LibreNMS 操作系统命令注入漏洞 |
Showing top 20 of 96 CVEs. View all on vendor page → →
No comments yet