Source |
The Hacker News |
Identifiant |
3597404 |
Date de publication |
2021-11-02 03:03:31 (vue: 2021-11-02 10:06:10) |
Titre |
Alert! Hackers Exploiting GitLab Unauthenticated RCE Flaw in the Wild |
Texte |
A now-patched critical remote code execution (RCE) vulnerability in GitLab's web interface has been detected as actively exploited in the wild, cybersecurity researchers warn, rendering a large number of internet-facing GitLab instances susceptible to attacks.
Tracked as CVE-2021-22205, the issue relates to an improper validation of user-provided images that results in arbitrary code execution. |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 22205 actively alert arbitrary as cve attacks been code critical cybersecurity detected execution exploited exploiting facing flaw gitlab hackers has images improper instances interface internet issue large now number patched provided rce relates remote rendering researchers results susceptible tracked unauthenticated user validation vulnerability warn web wild |
Tags |
Vulnerability
|
Stories |
|
Move |
|
Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2021-11-02 14:45:23 |
(Déjà vu) 50% of internet-facing GitLab installations are still affected by a RCE flaw (lien direct) |
Researchers warn of a now-fixed critical remote code execution (RCE) vulnerability in GitLab ‘s web interface actively exploited in the wild. Cybersecurity researchers warn of a now-patched critical remote code execution (RCE) vulnerability, tracked as CVE-2021-22205, in GitLab’s web interface that has been actively exploited in the wild. The vulnerability is an improper validation issue of […]
|
Vulnerability
|
|
|