Record summary

CVE-2020-26413 has a selected CVSS score of 5.3 (medium); EIP currently links 1 repository PoC and 1 Nuclei template.

Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.4 before 13.6.2. Information disclosure via GraphQL results in user email being unexpectedly visible.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
1
Nuclei templates
1

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List>=13.4, <13.4.7affected
>=13.5, <13.5.5affected
>=13.6, <13.6.2affected

Proofs of concept

1

Repository PoCs

GitHubKento-Sec/GitLab-Graphql-CVE-2020-26413Repository PoCby Kento-SecStars: 1Not analyzed2 files

3.6 KiB

GitHub

PoC details

Nuclei templates

1
ProjectDiscoveryMEDIUMGitlab CE/EE 13.4 - 13.6.2 - Information DisclosureCVSS 5.3

GitLab CE and EE 13.4 through 13.6.2 is susceptible to Information disclosure via GraphQL. User email is visible. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site.

Impact

An attacker can gain unauthorized access to sensitive information.

Remediation

Upgrade Gitlab CE/EE to version 13.6.3 or later.

WeaknessesCWE-200
Authors_0xf4n9x_, pikpikcu
Template tagscvecve2020hackeronegitlabexposureenumgraphqlvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CPE: cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Shodan: http.title:"GitLab"
Shodan: cpe:"cpe:2.3:a:gitlab:gitlab"
Shodan: http.title:"gitlab"
FOFA: title="gitlab"
Google: intitle:"gitlab"

Source: ProjectDiscovery

References

4