GitHub Enterprise Server是美国GitHub开源的一个应用软件。提供一个将自己的GitHub实例设置为虚拟设备,从而提供可扩展,易于管理的平台。 GitHub Enterprise Server 3.7.0版本存在安全漏洞,该漏洞源于当攻击者将路径名限制为受限制目录时可以实现远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GitHub | GitHub Enterprise Server | 3.7 ~ 3.7.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-23741 | Incorrect authorization in GitHub Enterprise Server token generation leading to full admin | |
| CVE-2022-46256 | Path traversal in GitHub Enterprise Server leading to remote code execution in GitHub Page |
No comments yet