Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git
🔬 Recherche Scientifique
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June 10. It runs commands as git on any self-managed 18.11.3 server that has not taken the update. Any authenticated user who can push to a project can run it. The attacker commits a crafted Jupyter notebook and opens its commit diff, which leaks a heap
📖 Cet article provient d'une source externe.
🔗 Lire l'article complet sur la source →68 mots extraits · Source originale
🔥 OFFRE PARTENAIRE
Baseus Eli 2i Fit Open-Ear Earphones True Wireless Bluetooth 6.0 Ear Hooks Headphones IPX5 Waterproof Sports Earbuds Bass Boost
🔥 Baseus Eli 2i Fit Open-Ear Earphones True Wireless Bluetooth 6.0 Ear Hooks Headphones IPX5 Waterproof Sports Earbuds Bass Boost - Une offre exceptionnelle à ne pas manquer ! Cliquez pour découvrir.
✅ Consultez les photos supplémentaires.
✅ Découvrez toutes les caractéristiques.
✅ Vérifiez la disponibilité actuelle.
✅ Consultez les avis des acheteurs.
✅ Découvrez toutes les caractéristiques.
✅ Vérifiez la disponibilité actuelle.
✅ Consultez les avis des acheteurs.