GitHub是一套面向开源及私有软件项目的托管平台。 GitHub Enterprise Server 存在安全漏洞,该漏洞允许实例的经过身份验证的用户通过特别设计的pull请求和REST API请求获得对未授权存储库的写访问权。以下产品及版本:GitHub Enterprise Server since 2.4.21 and was fixed in versions 2.20.24, 2.21.15, 2.22.7 and 3.0.1。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GitHub | GitHub Enterprise Server | 2.20 ~ 2.20.24 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-10519 | Unsafe configuration options in GitHub Pages leading to remote code execution on GitHub En | |
| CVE-2021-22862 | Improper access control in GitHub Enterprise Server leading to the disclosure of Actions s | |
| CVE-2021-22863 | Improper access control in GitHub Enterprise Server leading to unauthorized changes to mai |
No comments yet