Files
CVEs-PoC/2017/CVE-2017-12426.md
T
2025-09-29 21:09:30 +02:00

18 lines
751 B
Markdown

### [CVE-2017-12426](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-12426)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen)
### Description
GitLab Community Edition (CE) and Enterprise Edition (EE) before 8.17.8, 9.0.x before 9.0.13, 9.1.x before 9.1.10, 9.2.x before 9.2.10, 9.3.x before 9.3.10, and 9.4.x before 9.4.4 might allow remote attackers to execute arbitrary code via a crafted SSH URL in a project import.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/sm-paul-schuette/CVE-2017-12426