Lucene search

K
githubexploitCF980034-AC17-5785-B6A3-F480381970F1
HistoryJan 12, 2024 - 6:29 p.m.

Exploit for Improper Access Control in Gitlab

2024-01-1218:29:27
206
exploit
gitlab
vulnerability
account-take-over
password recovery
reset mechanism
security
cve-2023-7028
email management
2-factor authentication
proof of concept
research
educational
payload
poc
python script
automation
help
attacker
administrator
target account

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N

9.1 High

AI Score

Confidence

High

0.96 High

EPSS

Percentile

99.5%

CVE-2023-7028 | Account-Take-Over Gitlab

Disclamer

This…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N

9.1 High

AI Score

Confidence

High

0.96 High

EPSS

Percentile

99.5%