Source |
The Hacker News |
Identifiant |
8561794 |
Date de publication |
2024-08-22 10:18:00 (vue: 2024-08-22 06:17:42) |
Titre |
GitHub Patches Critical Security Flaw in Enterprise Server accordant des privilèges d'administration GitHub Patches Critical Security Flaw in Enterprise Server Granting Admin Privileges |
Texte |
GitHub a publié des correctifs pour aborder un ensemble de trois défauts de sécurité ayant un impact sur son produit de serveur d'entreprise, y compris un bogue critique qui pourrait être abusé pour obtenir des privilèges d'administrateur de site.
La plus grave des lacunes a été attribuée à l'identifiant CVE CVE-2024-6800 et a un score CVSS de 9,5.
"Sur les instances GitHub Enterprise Server qui utilisent Saml Single Sign-On (SSO)
GitHub has released fixes to address a set of three security flaws impacting its Enterprise Server product, including one critical bug that could be abused to gain site administrator privileges.
The most severe of the shortcomings has been assigned the CVE identifier CVE-2024-6800, and carries a CVSS score of 9.5.
"On GitHub Enterprise Server instances that use SAML single sign-on (SSO) |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2024 6800 abused address admin administrator assigned been bug carries could critical cve cvss enterprise fixes flaw flaws gain github granting has identifier impacting including instances its most one patches privileges product released saml score security server set severe shortcomings sign single site sso three use |
Tags |
|
Stories |
|
Move |
|