An issue has been discovered in GitLab EE affecting all versions starting from 16.6 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. It was possible for an unauthenticated attacker to determine the GitLab version number for a GitLab instance.
References
Link | Resource |
---|---|
https://gitlab.com/gitlab-org/gitlab/-/issues/493355 | Broken Link |
Configurations
Configuration 1 (hide)
|
History
16 Oct 2024, 17:00
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* | |
First Time |
Gitlab
Gitlab gitlab |
|
CWE | NVD-CWE-noinfo | |
References | () https://gitlab.com/gitlab-org/gitlab/-/issues/493355 - Broken Link | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
Summary |
|
10 Oct 2024, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-10 10:15
Updated : 2024-10-16 17:00
NVD link : CVE-2024-9596
Mitre link : CVE-2024-9596
CVE.ORG link : CVE-2024-9596
JSON object : View
Products Affected
gitlab
- gitlab
CWE