Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-13268

A specially crafted request could be used to confirm the existence of files hosted on object storage services, without disclosing their contents. This vulnerability affects GitLab CE/EE 12.10 and later through 13.0.1
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.4%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2020-13268
  • Gitlab » Gitlab » Version: 12.10.0
    cpe:2.3:a:gitlab:gitlab:12.10.0
  • Gitlab » Gitlab » Version: 12.10.1
    cpe:2.3:a:gitlab:gitlab:12.10.1
  • Gitlab » Gitlab » Version: 12.10.10
    cpe:2.3:a:gitlab:gitlab:12.10.10
  • Gitlab » Gitlab » Version: 12.10.11
    cpe:2.3:a:gitlab:gitlab:12.10.11
  • Gitlab » Gitlab » Version: 12.10.12
    cpe:2.3:a:gitlab:gitlab:12.10.12
  • Gitlab » Gitlab » Version: 12.10.13
    cpe:2.3:a:gitlab:gitlab:12.10.13
  • Gitlab » Gitlab » Version: 12.10.2
    cpe:2.3:a:gitlab:gitlab:12.10.2
  • Gitlab » Gitlab » Version: 12.10.3
    cpe:2.3:a:gitlab:gitlab:12.10.3
  • Gitlab » Gitlab » Version: 12.10.4
    cpe:2.3:a:gitlab:gitlab:12.10.4
  • Gitlab » Gitlab » Version: 12.10.5
    cpe:2.3:a:gitlab:gitlab:12.10.5
  • Gitlab » Gitlab » Version: 12.10.6
    cpe:2.3:a:gitlab:gitlab:12.10.6
  • Gitlab » Gitlab » Version: 12.10.7
    cpe:2.3:a:gitlab:gitlab:12.10.7
  • Gitlab » Gitlab » Version: 12.10.8
    cpe:2.3:a:gitlab:gitlab:12.10.8
  • Gitlab » Gitlab » Version: 12.10.9
    cpe:2.3:a:gitlab:gitlab:12.10.9
  • Gitlab » Gitlab » Version: 13.0.0
    cpe:2.3:a:gitlab:gitlab:13.0.0
  • Gitlab » Gitlab » Version: 13.0.1
    cpe:2.3:a:gitlab:gitlab:13.0.1


Contact Us

Shodan ® - All rights reserved