A vulnerability has been found in GitLab Community Edition and Enterprise Edition 11.11 (Bug Tracking Software) and classified as critical. Affected by this vulnerability is an unknown function of the component API Endpoint. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.
GitLab Community Edition/Enterprise Edition 11.11 API Endpoint authentication bypass
- Virtual Patching
- October 7, 2021
- 3:05 am
CVE-2023-28102 : DISCORDRB ENCODER.RB FILE OS COMMAND INJECTION
Description discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely
CVE-2022-4126 : ABB RCCMD PRIOR 4.40 230207 HARD-CODED PASSWORD
Description Use of Default Password vulnerability in ABB RCCMD on Windows, Linux, MacOS allows Try Common or Default Usernames and
CVE-2023-25655 : BASERCMS UP TO 4.7.4 UNRESTRICTED UPLOAD
Description baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system