CVE-2021-22205

CRITICAL KEV RANSOMWARE NUCLEI

Gitlab < 13.8.8 - Code Injection

Title source: rule

Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.9. GitLab was not properly validating image files that were passed to a file parser which resulted in a remote command execution.

Exploits (34)

exploitdb WORKING POC
by Jacob Baines · textwebappsruby
https://www.exploit-db.com/exploits/50532
nomisec WORKING POC 287 stars
by Al1ex · remote
https://github.com/Al1ex/CVE-2021-22205
nomisec WORKING POC 237 stars
by inspiringz · remote
https://github.com/inspiringz/CVE-2021-22205
nomisec WORKING POC 182 stars
by mr-r3bot · remote
https://github.com/mr-r3bot/Gitlab-CVE-2021-22205
nomisec WORKING POC 86 stars
by XTeam-Wing · poc
https://github.com/XTeam-Wing/CVE-2021-22205
nomisec WORKING POC 68 stars
by r0eXpeR · remote
https://github.com/r0eXpeR/CVE-2021-22205
nomisec WORKING POC 23 stars
by whwlsfb · poc
https://github.com/whwlsfb/CVE-2021-22205
nomisec WORKING POC 13 stars
by c0okB · remote
https://github.com/c0okB/CVE-2021-22205
nomisec WORKING POC 12 stars
by keven1z · remote
https://github.com/keven1z/CVE-2021-22205
nomisec WORKING POC 7 stars
by ZZ-SOCMAP · poc
https://github.com/ZZ-SOCMAP/CVE-2021-22205
nomisec WORKING POC 6 stars
by faisalfs10x · poc
https://github.com/faisalfs10x/GitLab-CVE-2021-22205-scanner
nomisec WORKING POC 3 stars
by pizza-power · remote
https://github.com/pizza-power/Golang-CVE-2021-22205-POC
nomisec WORKING POC 3 stars
by runsel · remote
https://github.com/runsel/GitLab-CVE-2021-22205-
nomisec WORKING POC 3 stars
by shang159 · poc
https://github.com/shang159/CVE-2021-22205-getshell
nomisec WORKING POC 2 stars
by findneo · poc
https://github.com/findneo/GitLab-preauth-RCE_CVE-2021-22205
nomisec WORKING POC 1 stars
by NukingDragons · remote
https://github.com/NukingDragons/gitlab-cve-2021-22205
nomisec NO CODE 1 stars
by momika233 · remote
https://github.com/momika233/cve-2021-22205-GitLab-13.10.2---Remote-Code-Execution-RCE-Unauthenticated-
nomisec WORKING POC 1 stars
by w0x68y · poc
https://github.com/w0x68y/Gitlab-CVE-2021-22205
nomisec SCANNER 1 stars
by DIVD-NL · infoleak
https://github.com/DIVD-NL/GitLab-cve-2021-22205-nse
gitlab STUB
by edwardnguyen329 · poc
https://gitlab.com/edwardnguyen329/cve-2021-22205
gitlab WORKING POC
by MkAnHui · poc
https://gitlab.com/MkAnHui/CVE-2021-22205
gitlab WORKING POC
by ahmad4fifz · poc
https://gitlab.com/ahmad4fifz/docker-cve-2021-22205
nomisec WORKING POC
by ccordeiro · poc
https://github.com/ccordeiro/CVE-2021-22205
nomisec WORKING POC
by cc3305 · remote
https://github.com/cc3305/CVE-2021-22205
nomisec WORKING POC
by devdanqtuan · remote
https://github.com/devdanqtuan/CVE-2021-22205
nomisec STUB
by Hikikan · poc
https://github.com/Hikikan/CVE-2021-22205
nomisec WORKING POC
by overgrowncarrot1 · remote
https://github.com/overgrowncarrot1/DejaVu-CVE-2021-22205
nomisec WORKING POC
by hhhotdrink · remote
https://github.com/hhhotdrink/CVE-2021-22205
nomisec STUB
by hh-hunter · poc
https://github.com/hh-hunter/cve-2021-22205
metasploit WORKING POC EXCELLENT
by William Bowling, jbaines-r7 · rubypocunix
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/gitlab_exif_rce.rb

Nuclei Templates (2)

GitLab CE/EE Unauthenticated RCE Using ExifTool
CRITICALby pdteam
Shodan: http.title:"GitLab"
GitLab CE/EE - Remote Code Execution
CRITICALby GitLab Red Team
Shodan: http.title:"GitLab" || cpe:"cpe:2.3:a:gitlab:gitlab" || http.title:"gitlab"
FOFA: title="gitlab"

Scores

CVSS v3 10.0
EPSS 0.9447
EPSS Percentile 100.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Details

CISA KEV 2021-11-03
VulnCheck KEV 2021-11-03
InTheWild.io 2021-10-25
ENISA EUVD EUVD-2021-9351
Ransomware Use Confirmed
CWE
CWE-94
Status published
Products (1)
gitlab/gitlab 11.9.0 - 13.8.8 (2 CPE variants)
Published Apr 23, 2021
KEV Added Nov 03, 2021
Tracked Since Feb 18, 2026