Записи gitlist
4 опубликованных записей вендора gitlist.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 2 · 50 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 25 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
61На этой неделе | CVE-2018-1000533Готовый эксплойт | klaussilveira GitList version <= 0.6 contains a Passing incorrectly sanitized input to system function vulnerability in `searchTree` functiogitlist · gitlist · CWE-20 | Критическая9,8 | — | 73,0 % | 26 июн. 2018 г. |
55В плане | CVE-2014-4511Готовый эксплойт | Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a requestgitlist · gitlist | Высокая7,5 | — | 82,7 % | 22 июл. 2014 г. |
33Наблюдать | CVE-2013-7392Proof of concept | Gitlist allows remote attackers to execute arbitrary commands via shell metacharacters in a file name to Source/.gitlist · gitlist | Высокая7,5 | — | 8,5 % | 22 июл. 2014 г. |
28Наблюдать | CVE-2014-5023Proof of concept | Repository.php in Gitter, as used in Gitlist, allows remote attackers with commit privileges to execute arbitrary commands via shell metachagitlist · gitlist | Средняя6,8 | — | 3,4 % | 22 июл. 2014 г. |
- CVE-2018-100053361На этой неделе
klaussilveira GitList version <= 0.6 contains a Passing incorrectly sanitized input to system function vulnerability in `searchTree` functio
КритическаяCVSS 9,8Готовый эксплойтEPSS 73 %gitlist · gitlist26 июн. 2018 г.
- CVE-2014-451155В плане
Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request
ВысокаяCVSS 7,5Готовый эксплойтEPSS 83 %gitlist · gitlist22 июл. 2014 г.
- CVE-2013-739233Наблюдать
Gitlist allows remote attackers to execute arbitrary commands via shell metacharacters in a file name to Source/.
ВысокаяCVSS 7,5Proof of conceptEPSS 8 %gitlist · gitlist22 июл. 2014 г.
- CVE-2014-502328Наблюдать
Repository.php in Gitter, as used in Gitlist, allows remote attackers with commit privileges to execute arbitrary commands via shell metacha
СредняяCVSS 6,8Proof of conceptEPSS 3 %gitlist · gitlist22 июл. 2014 г.