CVE-2020-7973
https://notcve.org/view.php?id=CVE-2020-7973
GitLab through 12.7.2 allows XSS. GitLab versiones hasta 12.7.2, permite un ataque de tipo XSS. • https://about.gitlab.com/blog/categories/releases https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released https://gitlab.com/gitlab-org/security/gitlab/issues/14 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2020-7974
https://notcve.org/view.php?id=CVE-2020-7974
GitLab EE 10.1 through 12.7.2 allows Information Disclosure. GitLab EE versiones 10.1 hasta 12.7.2, permite una Divulgación de Información. • https://about.gitlab.com/blog/categories/releases https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released •
CVE-2020-7976
https://notcve.org/view.php?id=CVE-2020-7976
GitLab EE 12.4 and later through 12.7.2 has Incorrect Access Control. GitLab EE versiones 12.4 y posteriores hasta 12.7.2, presenta un Control de Acceso Incorrecto. • https://about.gitlab.com/blog/categories/releases https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released •
CVE-2020-7977
https://notcve.org/view.php?id=CVE-2020-7977
GitLab EE 8.8 and later through 12.7.2 has Insecure Permissions. GitLab EE versiones 8.8 y posteriores hasta 12.7.2, presenta Permisos No Seguros. • https://about.gitlab.com/blog/categories/releases https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released • CWE-276: Incorrect Default Permissions •
CVE-2020-7978
https://notcve.org/view.php?id=CVE-2020-7978
GitLab EE 12.6 and later through 12.7.2 allows Denial of Service. GitLab EE versiones 12.6 y posteriores hasta 12.7.2, permiten una Denegación de Servicio. • https://about.gitlab.com/blog/categories/releases https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released •