CVE-2020-13300 | xxxCVE-2020-13300 – xxx
菜单

CVE-2020-13300

九月 13, 2020 - 未分类

  1. CVE-Search
  2. CVE-2020-13300
ID CVE-2020-13300
SummaryGitLab before version 13.3.4 was vulnerable to an OAuth authorization scope change without user consent in the middle of the authorization flow.
References
Vulnerable Configurations

    CVSS
    Base: 5.0
    Impact:
    Exploitability:
    Access
    VectorComplexityAuthentication
    Impact
    ConfidentialityIntegrityAvailability
    Last major update14-09-2020 – 19:32
    Published14-09-2020 – 19:15
    Last modified14-09-2020 – 19:32

    Notice: Undefined variable: canUpdate in /var/www/html/wordpress/wp-content/plugins/wp-autopost-pro/wp-autopost-function.php on line 51