CVE-2018-18647: Medium severity gitlab vulnerability
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Missing Authorization.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-18647?
CVE-2018-18647 has a critical severity due to the missing authorization vulnerabilities that can potentially allow unauthorized access to sensitive data.
How do I fix CVE-2018-18647?
To fix CVE-2018-18647, upgrade GitLab to version 11.2.7, 11.3.8, or 11.4.3 or later.
What are the affected versions in CVE-2018-18647?
CVE-2018-18647 affects GitLab Community and Enterprise Edition versions prior to 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3.
What type of vulnerability is CVE-2018-18647?
CVE-2018-18647 is classified as a missing authorization vulnerability, which can lead to privilege escalation.
Can CVE-2018-18647 lead to data breaches?
Yes, CVE-2018-18647 can potentially lead to data breaches by allowing unauthorized users to access sensitive information.