Files
CVEs-PoC/2017/CVE-2017-12426.md
T
2024-05-26 14:27:05 +02:00

18 lines
740 B
Markdown

### [CVE-2017-12426](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-12426)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
GitLab Community Edition (CE) and Enterprise Edition (EE) before 8.17.8, 9.0.x before 9.0.13, 9.1.x before 9.1.10, 9.2.x before 9.2.10, 9.3.x before 9.3.10, and 9.4.x before 9.4.4 might allow remote attackers to execute arbitrary code via a crafted SSH URL in a project import.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/sm-paul-schuette/CVE-2017-12426