6.8

CVE-2013-4581

GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote attackers to execute arbitrary code via a crafted change using SSH.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GitlabGitlab SwEditioncommunity Version <= 6.2.3
GitlabGitlab Version0.8.0 SwEditioncommunity
GitlabGitlab Version0.9.1 SwEditioncommunity
GitlabGitlab Version0.9.4 SwEditioncommunity
GitlabGitlab Version0.9.6 SwEditioncommunity
GitlabGitlab Version1.0.0 SwEditioncommunity
GitlabGitlab Version1.0.1 SwEditioncommunity
GitlabGitlab Version1.0.2 SwEditioncommunity
GitlabGitlab Version1.1.0 SwEditioncommunity
GitlabGitlab Version1.2.0 SwEditioncommunity
GitlabGitlab Version1.2.1 SwEditioncommunity
GitlabGitlab Version1.2.2 SwEditioncommunity
GitlabGitlab Version2.0.0 SwEditioncommunity
GitlabGitlab Version2.1.0 SwEditioncommunity
GitlabGitlab Version2.2.0 SwEditioncommunity
GitlabGitlab Version2.3.0 SwEditioncommunity
GitlabGitlab Version2.3.1 SwEditioncommunity
GitlabGitlab Version2.4.0 SwEditioncommunity
GitlabGitlab Version2.5.0 SwEditioncommunity
GitlabGitlab Version2.6.0 SwEditioncommunity
GitlabGitlab Version2.7.0 SwEditioncommunity
GitlabGitlab Version2.8.0 SwEditioncommunity
GitlabGitlab Version2.8.1 SwEditioncommunity
GitlabGitlab Version2.9.0 SwEditioncommunity
GitlabGitlab Version2.9.1 SwEditioncommunity
GitlabGitlab Version3.0.0 SwEditioncommunity
GitlabGitlab Version3.0.1 SwEditioncommunity
GitlabGitlab Version3.0.2 SwEditioncommunity
GitlabGitlab Version3.0.3 SwEditioncommunity
GitlabGitlab Version3.1.0 SwEditioncommunity
GitlabGitlab Version4.0.0 SwEditioncommunity
GitlabGitlab Version4.1.0 SwEditioncommunity
GitlabGitlab Version4.2.0 SwEditioncommunity
GitlabGitlab Version5.0.0 SwEditioncommunity
GitlabGitlab Version5.0.1 SwEditioncommunity
GitlabGitlab Version5.1.0 SwEditioncommunity
GitlabGitlab Version5.2.0 SwEditioncommunity
GitlabGitlab Version5.3.0 SwEditioncommunity
GitlabGitlab Version5.4.0 SwEditioncommunity
GitlabGitlab Version5.4.1 SwEditioncommunity
GitlabGitlab Version5.4.2 SwEditioncommunity
GitlabGitlab Version6.0.0 SwEditioncommunity
GitlabGitlab Version6.1.0 SwEditioncommunity
GitlabGitlab Version6.2.0 SwEditioncommunity
GitlabGitlab Version6.2.1 SwEditioncommunity
GitlabGitlab Version6.2.2 SwEditioncommunity
GitlabGitlab SwEditionenterprise Version <= 6.2.0
GitlabGitlab Version0.8.0 SwEditionenterprise
GitlabGitlab Version0.9.1 SwEditionenterprise
GitlabGitlab Version0.9.4 SwEditionenterprise
GitlabGitlab Version0.9.6 SwEditionenterprise
GitlabGitlab Version1.0.0 SwEditionenterprise
GitlabGitlab Version1.0.1 SwEditionenterprise
GitlabGitlab Version1.0.2 SwEditionenterprise
GitlabGitlab Version1.1.0 SwEditionenterprise
GitlabGitlab Version1.2.0 SwEditionenterprise
GitlabGitlab Version1.2.1 SwEditionenterprise
GitlabGitlab Version1.2.2 SwEditionenterprise
GitlabGitlab Version2.0.0 SwEditionenterprise
GitlabGitlab Version2.1.0 SwEditionenterprise
GitlabGitlab Version2.2.0 SwEditionenterprise
GitlabGitlab Version2.3.0 SwEditionenterprise
GitlabGitlab Version2.3.1 SwEditionenterprise
GitlabGitlab Version2.4.0 SwEditionenterprise
GitlabGitlab Version2.5.0 SwEditionenterprise
GitlabGitlab Version2.6.0 SwEditionenterprise
GitlabGitlab Version2.7.0 SwEditionenterprise
GitlabGitlab Version2.8.0 SwEditionenterprise
GitlabGitlab Version2.8.1 SwEditionenterprise
GitlabGitlab Version2.9.0 SwEditionenterprise
GitlabGitlab Version2.9.1 SwEditionenterprise
GitlabGitlab Version3.0.0 SwEditionenterprise
GitlabGitlab Version3.0.1 SwEditionenterprise
GitlabGitlab Version3.0.2 SwEditionenterprise
GitlabGitlab Version3.0.3 SwEditionenterprise
GitlabGitlab Version3.1.0 SwEditionenterprise
GitlabGitlab Version4.0.0 SwEditionenterprise
GitlabGitlab Version4.1.0 SwEditionenterprise
GitlabGitlab Version4.2.0 SwEditionenterprise
GitlabGitlab Version5.0.0 SwEditionenterprise
GitlabGitlab Version5.0.1 SwEditionenterprise
GitlabGitlab Version5.1.0 SwEditionenterprise
GitlabGitlab Version5.2.0 SwEditionenterprise
GitlabGitlab Version5.3.0 SwEditionenterprise
GitlabGitlab Version5.4.0 SwEditionenterprise
GitlabGitlab Version5.4.1 SwEditionenterprise
GitlabGitlab Version5.4.2 SwEditionenterprise
GitlabGitlab Version6.0.0 SwEditionenterprise
GitlabGitlab Version6.1.0 SwEditionenterprise
GitlabGitlab-shell Version <= 1.7.7
GitlabGitlab-shell Version1.0.4
GitlabGitlab-shell Version1.1.0
GitlabGitlab-shell Version1.2.0
GitlabGitlab-shell Version1.3.0
GitlabGitlab-shell Version1.4.0
GitlabGitlab-shell Version1.5.0
GitlabGitlab-shell Version1.6.0
GitlabGitlab-shell Version1.7.0
GitlabGitlab-shell Version1.7.1
GitlabGitlab-shell Version1.7.2
GitlabGitlab-shell Version1.7.3
GitlabGitlab-shell Version1.7.4
GitlabGitlab-shell Version1.7.5
GitlabGitlab-shell Version1.7.6
GitlabGitlab Version5.0.0
GitlabGitlab Version5.0.1
GitlabGitlab Version5.1.0
GitlabGitlab Version5.2.0
GitlabGitlab Version5.3.0
GitlabGitlab Version5.4.0
GitlabGitlab Version5.4.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.74% 0.706
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
CWE-94 Improper Control of Generation of Code ('Code Injection')

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.