In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-01-05T21:51:51

Updated: 2020-01-05T21:51:51

Reserved: 2019-12-06T00:00:00


Link: CVE-2019-19628

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-01-05T22:15:11.173

Modified: 2020-01-10T18:03:17.507


Link: CVE-2019-19628

JSON object: View

cve-icon Redhat Information

No data.

CWE