GitLab Community Edition/Enterprise Edition 10.5 Webhook Hacker server-side request forgery

A vulnerability classified as critical was found in GitLab Community Edition and Enterprise Edition 10.5 (Bug Tracking Software). This vulnerability affects an unknown function of the component Webhook Hacker. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2023-23356 : QNAP QUFIREWALL UP TO 2.3.2 COMMAND INJECTION

CVE-2023-23356 : QNAP QUFIREWALL UP TO 2.3.2 COMMAND INJECTION

Description A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could

CVE-2024-48889 : FORTINET FORTIMANAGER UP TO 6.4.14/7.0.12/7.2.7/7.4.4/7.6.0 FGFM REQUEST OS COMMAND INJECTION

CVE-2024-48889 : FORTINET FORTIMANAGER UP TO 6.4.14/7.0.12/7.2.7/7.4.4/7.6.0 FGFM REQUEST OS COMMAND INJECTION

Description An Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) vulnerability [CWE-78] in FortiManager version

CVE-2023-34990 : FORTINET FORTIWLM UP TO 8.5.4/8.6.5 WEB REQUEST PATH TRAVERSAL

CVE-2023-34990 : FORTINET FORTIWLM UP TO 8.5.4/8.6.5 WEB REQUEST PATH TRAVERSAL

Description A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute