gitlist records
4 published records for vendor gitlist.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 2 · 50%
- Pre-auth RCE
- 3
- With a fix record
- 25%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
61This week | CVE-2018-1000533Weaponized | klaussilveira GitList version <= 0.6 contains a Passing incorrectly sanitized input to system function vulnerability in `searchTree` functiogitlist · gitlist · CWE-20 | Critical9.8 | — | 73.0% | Jun 26, 2018 |
55Plan | CVE-2014-4511Weaponized | Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a requestgitlist · gitlist | High7.5 | — | 82.7% | Jul 22, 2014 |
33Monitor | CVE-2013-7392Proof of concept | Gitlist allows remote attackers to execute arbitrary commands via shell metacharacters in a file name to Source/.gitlist · gitlist | High7.5 | — | 8.5% | Jul 22, 2014 |
28Monitor | CVE-2014-5023Proof of concept | Repository.php in Gitter, as used in Gitlist, allows remote attackers with commit privileges to execute arbitrary commands via shell metachagitlist · gitlist | Medium6.8 | — | 3.4% | Jul 22, 2014 |
- CVE-2018-100053361This week
klaussilveira GitList version <= 0.6 contains a Passing incorrectly sanitized input to system function vulnerability in `searchTree` functio
CriticalCVSS 9.8WeaponizedEPSS 73%gitlist · gitlistJun 26, 2018
- CVE-2014-451155Plan
Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request
HighCVSS 7.5WeaponizedEPSS 83%gitlist · gitlistJul 22, 2014
- CVE-2013-739233Monitor
Gitlist allows remote attackers to execute arbitrary commands via shell metacharacters in a file name to Source/.
HighCVSS 7.5Proof of conceptEPSS 8%gitlist · gitlistJul 22, 2014
- CVE-2014-502328Monitor
Repository.php in Gitter, as used in Gitlist, allows remote attackers with commit privileges to execute arbitrary commands via shell metacha
MediumCVSS 6.8Proof of conceptEPSS 3%gitlist · gitlistJul 22, 2014