8.8

CVE-2024-4024

Exploit

Authentication Bypass by Assumed-Immutable Data in GitLab

An issue has been discovered in GitLab CE/EE affecting all versions starting from 7.8 before 16.9.6, all versions starting from 16.10 before 16.10.4, all versions starting from 16.11 before 16.11.1. Under certain conditions, an attacker with their Bitbucket account credentials may be able to take over a GitLab account linked to another user's Bitbucket account, if Bitbucket is used as an OAuth 2.0 provider on GitLab.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Gitlab ≫ GitLab SwEdition community Version >= 7.8.0 < 16.9.6
Gitlab ≫ GitLab SwEdition enterprise Version >= 7.8.0 < 16.9.6
Gitlab ≫ GitLab SwEdition community Version >= 16.10.0 < 16.10.4
Gitlab ≫ GitLab SwEdition enterprise Version >= 16.10.0 < 16.10.4
Gitlab ≫ GitLab Version 16.11.0 SwEdition community
Gitlab ≫ GitLab Version 16.11.0 SwEdition enterprise
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 14.9% 0.963
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
cve@gitlab.com 7.3 2.1 5.2
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

CWE-302 Authentication Bypass by Assumed-Immutable Data

The authentication scheme or implementation uses key data elements that are assumed to be immutable, but can be controlled or modified by the attacker.

https://gitlab.com/gitlab-org/gitlab/-/issues/452426
Exploit
Issue Tracking