mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 10:41:43 +00:00
31 lines
1.4 KiB
Markdown
31 lines
1.4 KiB
Markdown
![]() |
### [CVE-2023-2825](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2825)
|
||
|

|
||
|

|
||
|
%20in%20GitLab&color=brighgreen)
|
||
|
|
||
|
### Description
|
||
|
|
||
|
An issue has been discovered in GitLab CE/EE affecting only version 16.0.0. An unauthenticated malicious user can use a path traversal vulnerability to read arbitrary files on the server when an attachment exists in a public project nested within at least five groups.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
No PoCs from references.
|
||
|
|
||
|
#### Github
|
||
|
- https://github.com/CVEDB/awesome-cve-repo
|
||
|
- https://github.com/CVEDB/top
|
||
|
- https://github.com/EmmanuelCruzL/CVE-2023-2825
|
||
|
- https://github.com/GhostTroops/TOP
|
||
|
- https://github.com/Occamsec/CVE-2023-2825
|
||
|
- https://github.com/Rubikcuv5/CVE-2023-2825
|
||
|
- https://github.com/Threekiii/CVE
|
||
|
- https://github.com/Tornad0007/CVE-2023-2825-Gitlab
|
||
|
- https://github.com/abrahim7112/Vulnerability-checking-program-for-Android
|
||
|
- https://github.com/caopengyan/CVE-2023-2825
|
||
|
- https://github.com/hheeyywweellccoommee/CVE-2023-2825-zaskh
|
||
|
- https://github.com/hktalent/TOP
|
||
|
- https://github.com/johe123qwe/github-trending
|
||
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
||
|
|