GitLab Community Edition/Enterprise Edition 12.6 Issue improper authorization

A vulnerability was found in GitLab Community Edition and Enterprise Edition 12.6 (Bug Tracking Software). It has been classified as critical. This affects some unknown functionality of the component Issue Handler. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2023-28102 : DISCORDRB ENCODER.RB FILE OS COMMAND INJECTION

CVE-2023-28102 : DISCORDRB ENCODER.RB FILE OS COMMAND INJECTION

Description discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely

CVE-2022-4126 : ABB RCCMD PRIOR 4.40 230207 HARD-CODED PASSWORD

CVE-2022-4126 : ABB RCCMD PRIOR 4.40 230207 HARD-CODED PASSWORD

Description Use of Default Password vulnerability in ABB RCCMD on Windows, Linux, MacOS allows Try Common or Default Usernames and

CVE-2023-25655 : BASERCMS UP TO 4.7.4 UNRESTRICTED UPLOAD

CVE-2023-25655 : BASERCMS UP TO 4.7.4 UNRESTRICTED UPLOAD

Description baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system