8.8

CVE-2018-19359

Exploit

GitLab Community and Enterprise Edition 8.9 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 has Incorrect Access Control.

Data is provided by the National Vulnerability Database (NVD)
GitlabGitlab SwEditioncommunity Version >= 11.3.0 < 11.3.10
GitlabGitlab SwEditionenterprise Version >= 11.3.0 < 11.3.10
GitlabGitlab SwEditioncommunity Version >= 11.4.0 < 11.4.6
GitlabGitlab SwEditionenterprise Version >= 11.4.0 < 11.4.6
GitlabGitlab SwEditioncommunity Version >= 11.4.7 <= 11.4.9
GitlabGitlab SwEditionenterprise Version >= 11.4.7 <= 11.4.9
GitlabGitlab Version11.5.0 Update- SwEditioncommunity
GitlabGitlab Version11.5.0 Update- SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc1 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc1 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc10 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc10 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc11 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc11 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc2 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc2 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc3 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc3 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc4 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc4 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc5 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc5 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc6 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc6 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc7 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc7 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc8 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc8 SwEditionenterprise
GitlabGitlab Version11.5.0 Updaterc9 SwEditioncommunity
GitlabGitlab Version11.5.0 Updaterc9 SwEditionenterprise
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.34% 0.562
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P