CVE-2019-18447: Medium severity gitlab vulnerability
Published Nov 26, 2019
·Updated
An issue was discovered in GitLab Community and Enterprise Edition before 12.4. It has Insecure Permissions.
Affected Software
2 affected components
GitLab GitLab<=12.4.0
GitLab GitLab<=12.4.0
Event History
Nov 26, 2019
CVE Published
via MITRE·04:49 PM
Data Sourced
via MITRE·04:49 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-18447?
CVE-2019-18447 has a medium severity rating due to its impact on access control.
2
How do I fix CVE-2019-18447?
To fix CVE-2019-18447, upgrade to GitLab Community or Enterprise Edition version 12.4.1 or later.
3
What type of issue is CVE-2019-18447?
CVE-2019-18447 is an insecure permissions vulnerability affecting GitLab software.
4
Which versions of GitLab are affected by CVE-2019-18447?
CVE-2019-18447 affects GitLab Community and Enterprise Editions versions before 12.4.1.
5
What can be the consequences of CVE-2019-18447?
The consequences of CVE-2019-18447 include unauthorized access to sensitive data or features.