CVE-2020-7966: Path Traversal
Published Feb 5, 2020
·Updated
GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal.
Affected Software
3 affected components
GitLab GitLab>=11.11.0<12.5.9
GitLab GitLab>=12.6.0<12.6.6
GitLab GitLab>=12.7.0<=12.7.2
Event History
Feb 5, 2020
CVE Published
via MITRE·03:58 PM
Data Sourced
via MITRE·03:58 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-7966?
CVE-2020-7966 is considered a medium severity vulnerability due to its potential impact on directory traversal.
2
How do I fix CVE-2020-7966?
To fix CVE-2020-7966, upgrade GitLab to the latest version that addresses this vulnerability.
3
What versions are affected by CVE-2020-7966?
CVE-2020-7966 affects GitLab EE versions from 11.11.0 to 12.7.2.
4
Can CVE-2020-7966 be exploited remotely?
Yes, CVE-2020-7966 can potentially be exploited remotely to access sensitive files.
5
What is directory traversal vulnerability in CVE-2020-7966?
Directory traversal in CVE-2020-7966 allows attackers to access files and directories stored outside the intended file path.