CVE-2019-12433

medium

Description

An issue was discovered in GitLab Community and Enterprise Edition 11.7 through 11.11. It has Improper Input Validation. Restricted visibility settings allow creating internal projects in private groups, leading to multiple permission issues.

References

https://about.gitlab.com/releases/2019/06/03/security-release-gitlab-11-dot-11-dot-1-released/

https://about.gitlab.com/blog/categories/releases/

Details

Source: Mitre, NVD

Published: 2020-03-10

Updated: 2020-03-10

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 5.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Severity: Medium