Skip to content
Noroxi

cgit project records

4 published records for vendor cgit project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 25%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18

Bar: total · dark part: CISA KEV.

All records

4 records
  • cgit_clone_objects in CGit before 1.2.1 has a directory traversal vulnerability when `enable-http-clone=1` is not turned off, as demonstrate

    HighCVSS 7.5WeaponizedEPSS 92%

    cgit project · cgitAug 3, 2018

  • Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value

    CriticalCVSS 9.8No exploitEPSS 4%

    fedoraproject · fedoraJan 20, 2016

  • CVE-2016-1899
    15Monitor

    CRLF injection vulnerability in the ui-blob handler in CGit before 0.12 allows remote attackers to inject arbitrary HTTP headers and conduct

    LowCVSS 3.7No exploitEPSS 2%

    fedoraproject · fedoraJan 20, 2016

  • CVE-2016-1900
    15Monitor

    CRLF injection vulnerability in the cgit_print_http_headers function in ui-shared.c in CGit before 0.12 allows remote attackers with permiss

    LowCVSS 3.7No exploitEPSS 2%

    fedoraproject · fedoraJan 20, 2016