CVE-2019-9217: Critical severity gitlab vulnerability
Published Apr 17, 2019
·Updated
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. Its User Interface has a Misrepresentation of Critical Information.
Affected Software
6 affected components
GitLab GitLab<11.6.10
GitLab GitLab<11.6.10
GitLab GitLab>=11.7.0<11.7.6
GitLab GitLab>=11.7.0<11.7.6
GitLab GitLab>=11.8.0<11.8.1
GitLab GitLab>=11.8.0<11.8.1
Event History
Apr 17, 2019
CVE Published
via MITRE·04:46 PM
Data Sourced
via MITRE·04:46 PM
Description
Data Sourced
via NVD·05:29 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-9217?
CVE-2019-9217 has been classified as a medium severity vulnerability due to misrepresentation of critical information in the user interface.
2
How do I fix CVE-2019-9217?
To fix CVE-2019-9217, upgrade GitLab to version 11.6.10, 11.7.6, or 11.8.1 or later.
3
What versions are affected by CVE-2019-9217?
CVE-2019-9217 affects GitLab Community and Enterprise Editions before versions 11.6.10, 11.7.6, and 11.8.1.
4
What type of vulnerability is CVE-2019-9217?
CVE-2019-9217 is a user interface vulnerability that leads to misrepresentation of critical information.
5
Can CVE-2019-9217 be exploited remotely?
Yes, CVE-2019-9217 can be exploited remotely as it affects the user interface of the GitLab application.