CVE-2024-6356 - CERT CVE
ID CVE-2024-6356
Sažetak An issue was discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.0.6, starting from 17.1 prior to 17.1.4, and starting from 17.2 prior to 17.2.2, which allowed cross project access for Security policy bot.
Reference
CVSS
Base: 4.4
Impact: 2.7
Exploitability:1.3
Pristup
VektorSloženostAutentikacija
NETWORK HIGH LOW
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:N
Zadnje važnije ažuriranje 05-02-2025 - 10:15
Objavljeno 05-02-2025 - 10:15