CVE-2024-8402 - CERT CVE
ID CVE-2024-8402
Sažetak An issue was discovered in GitLab EE affecting all versions starting from 17.2 before 17.7.7, all versions starting from 17.8 before 17.8.5, all versions starting from 17.9 before 17.9.2. An input validation issue in the Google Cloud IAM integration feature could have enabled a Maintainer to introduce malicious code.
Reference
CVSS
Base: 3.7
Impact: 2.7
Exploitability:0.6
Pristup
VektorSloženostAutentikacija
LOCAL HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW NONE
CVSS vektor CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:L/I:L/A:N
Zadnje važnije ažuriranje 13-03-2025 - 06:15
Objavljeno 13-03-2025 - 06:15