|
224161
|
10.0 |
CRITICAL
Network
|
dell
|
emc_storage_monitoring_and_reporting
|
Dell EMC Storage Monitoring and Reporting version 4.3.1 contains a Java RMI Deserialization of Untrusted Data vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerabili…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-18580
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224162
|
5.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition 8.17 through 12.4 in the Search feature provided by Elasticsearch integration.. It has Insecure Permissions (issue 1 of 4).
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-18456
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224163
|
7.5 |
HIGH
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition 11 through 12.4 when building Nested GraphQL queries. It has a large or infinite loop.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2019-18455
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224164
|
6.1 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition 10.5 through 12.4 in link validation for RDoc wiki pages feature. It has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-18454
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224165
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition 11.6 through 12.4 in the add comments via email feature. It has Insecure Permissions.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-18453
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224166
|
5.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4 when moving an issue to a public project from a private one. It has Insecure Permissions.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-18452
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224167
|
6.1 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition 10.7.4 through 12.4 in the InternalRedirect filtering feature. It has an Open Redirect.
|
CWE-601
Open Redirect
|
CVE-2019-18451
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224168
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition before 12.4 in the Project labels feature. It has Insecure Permissions.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-18450
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224169
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition before 12.4 in the autocomplete feature. It has Insecure Permissions (issue 2 of 2).
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-18449
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224170
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue was discovered in GitLab Community and Enterprise Edition before 12.4. It has Incorrect Access Control.
|
NVD-CWE-noinfo
|
CVE-2019-18448
|
2024-11-21 13:33 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|