
CVE-2020-7971
https://notcve.org/view.php?id=CVE-2020-7971
05 Feb 2020 — GitLab EE 11.0 and later through 12.7.2 allows XSS. GitLab EE versiones 11.0 y posteriores hasta 12.7.2, permite un ataque de tipo XSS. • https://about.gitlab.com/blog/categories/releases • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2020-7972
https://notcve.org/view.php?id=CVE-2020-7972
05 Feb 2020 — GitLab EE 12.2 has Insecure Permissions (issue 2 of 2). GitLab EE versión 12.2, presenta Permisos No Seguros (problema 2 de 2). • https://about.gitlab.com/blog/categories/releases • CWE-276: Incorrect Default Permissions •

CVE-2020-7973
https://notcve.org/view.php?id=CVE-2020-7973
05 Feb 2020 — GitLab through 12.7.2 allows XSS. GitLab versiones hasta 12.7.2, permite un ataque de tipo XSS. • https://about.gitlab.com/blog/categories/releases • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2020-7974
https://notcve.org/view.php?id=CVE-2020-7974
05 Feb 2020 — GitLab EE 10.1 through 12.7.2 allows Information Disclosure. GitLab EE versiones 10.1 hasta 12.7.2, permite una Divulgación de Información. • https://about.gitlab.com/blog/categories/releases •

CVE-2020-7976
https://notcve.org/view.php?id=CVE-2020-7976
05 Feb 2020 — GitLab EE 12.4 and later through 12.7.2 has Incorrect Access Control. GitLab EE versiones 12.4 y posteriores hasta 12.7.2, presenta un Control de Acceso Incorrecto. • https://about.gitlab.com/blog/categories/releases •

CVE-2020-7977
https://notcve.org/view.php?id=CVE-2020-7977
05 Feb 2020 — GitLab EE 8.8 and later through 12.7.2 has Insecure Permissions. GitLab EE versiones 8.8 y posteriores hasta 12.7.2, presenta Permisos No Seguros. • https://about.gitlab.com/blog/categories/releases • CWE-276: Incorrect Default Permissions •

CVE-2020-7978
https://notcve.org/view.php?id=CVE-2020-7978
05 Feb 2020 — GitLab EE 12.6 and later through 12.7.2 allows Denial of Service. GitLab EE versiones 12.6 y posteriores hasta 12.7.2, permiten una Denegación de Servicio. • https://about.gitlab.com/blog/categories/releases •

CVE-2020-7979
https://notcve.org/view.php?id=CVE-2020-7979
05 Feb 2020 — GitLab EE 8.9 and later through 12.7.2 has Insecure Permission GitLab EE versiones 8.9 y posteriores hasta 12.7.2, presenta Permisos No Seguros. • https://about.gitlab.com/blog/categories/releases • CWE-276: Incorrect Default Permissions •

CVE-2020-8114
https://notcve.org/view.php?id=CVE-2020-8114
05 Feb 2020 — GitLab EE 8.9 and later through 12.7.2 has Insecure Permission GitLab EE versiones 8.9 y posteriores hasta 12.7.2, presenta Permisos No Seguros. • https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released • CWE-276: Incorrect Default Permissions •

CVE-2013-4582
https://notcve.org/view.php?id=CVE-2013-4582
28 Jan 2020 — The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated users to include information from local files into the metadata of a Git repository via the web interface. Las funciones (1) create_branch, (2) create_tag, (3) import_project y (4) fork_project en el archivo lib/gitlab_projects.rb en GitLab versi... • http://www.openwall.com/lists/oss-security/2013/11/15/4 • CWE-829: Inclusion of Functionality from Untrusted Control Sphere •