Vulnerability Details CVE-2013-4489
The Grit gem for Ruby, as used in GitLab 5.2 before 5.4.1 and 6.x before 6.2.3, allows remote authenticated users to execute arbitrary commands, as demonstrated by the search box for the GitLab code search feature.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.3%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2013-4489
-
cpe:2.3:a:gitlab:gitlab:5.2.0
-
cpe:2.3:a:gitlab:gitlab:5.3.0
-
cpe:2.3:a:gitlab:gitlab:5.4.0
-
cpe:2.3:a:gitlab:gitlab:6.0.0
-
cpe:2.3:a:gitlab:gitlab:6.1.0
-
cpe:2.3:a:gitlab:gitlab:6.2.0
-
cpe:2.3:a:gitlab:gitlab:6.2.1
-
cpe:2.3:a:gitlab:gitlab:6.2.2