vulnerability
FreeBSD: VID-DDD48087-BD86-11E9-B13F-001B217B3468 (CVE-2019-14942): Gitlab -- Multiple Vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:C/I:N/A:N) | Aug 12, 2019 | Aug 14, 2019 | Jan 28, 2025 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:C/I:N/A:N)
Published
Aug 12, 2019
Added
Aug 14, 2019
Modified
Jan 28, 2025
Description
Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.
From VID-DDD48087-BD86-11E9-B13F-001B217B3468:
Gitlab reports:
Insecure Authentication Methods Disabled for Grafana By Default
Multiple Command-Line Flag Injection Vulnerabilities
Insecure Cookie Handling on GitLab Pages
Solution
freebsd-upgrade-package-gitlab-ce
References
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.