Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2013-4580
HistoryMay 12, 2014 - 2:55 p.m.

CVE-2013-4580

2014-05-1214:55:05
Debian Security Bug Tracker
security-tracker.debian.org
5

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

0.007 Low

EPSS

Percentile

80.6%

GitLab before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1, when using a MySQL backend, allows remote attackers to impersonate arbitrary users and bypass authentication via unspecified API calls.

OSVersionArchitecturePackageVersionFilename
Debian999allgitlab< 16.8.4-1gitlab_16.8.4-1_all.deb

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

0.007 Low

EPSS

Percentile

80.6%

Related for DEBIANCVE:CVE-2013-4580