Lucene search

K
osvGoogleOSV:CVE-2019-15585
HistoryJan 28, 2020 - 3:15 a.m.

CVE-2019-15585

2020-01-2803:15:10
Google
osv.dev
2

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.5%

Improper authentication exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE) in the GitLab SAML integration had a validation issue that permitted an attacker to takeover another user’s account.

CPENameOperatorVersion
gitlabeq12.3.0-ee
gitlabeq12.3.1-ee

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.5%

Related for OSV:CVE-2019-15585