Retour à la recherche

CVE-2014-8540

MEDIUM
6.5NVD

The groups API in GitLab 6.x and 7.x before 7.4.3 allows remote authenticated guest users to modify ownership of arbitrary groups by leveraging improper permission checks.

Partager :

Score CVSS v3.0

6.5
/ 10.0
MEDIUM
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Informations

Publié
5 janv. 2018
Mis à jour
17 juin 2026
Statut
Modified
Source
cve@mitre.org

Produits affectés

gitlab gitlab
Versions : 6.9.2, 7.4.3

Faiblesses (CWE)

CWE-264

CVEs similaires

Autres vulnérabilités de type CWE-264

Loading…

Surveillez vos produits

Recevez une alerte automatique à chaque nouvelle CVE affectant vos équipements.

Activer la surveillance