GitHub Enterprise Server是美国GitHub开源的一个应用软件。提供一个将自己的GitHub实例设置为虚拟设备,从而提供可扩展,易于管理的平台。 GitHub Enterprise Server 3.14之前版本存在安全漏洞,该漏洞源于在使用特定身份提供者的SAML身份验证时存在XML签名包装漏洞,允许攻击者伪造对供应的SAML响应和/或获得对具有站点管理员权限的用户的访问权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GitHub | GitHub Enterprise Server | 3.13.0 ~ 3.13.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-7711 | GitHub Enterprise Server 安全漏洞 | |
| CVE-2024-6337 | Incorrect Authorization allows read access to issues in GitHub Enterprise Server |
No comments yet