🔙 목록으로 돌아가기

CVE-2022-0735: GitLab CE/EE - Information Disclosure

TitleGitLab CE/EE - Information Disclosure
AuthorGitLab Red Team
SeverityCritical
ImpactAn attacker can gain access to sensitive information stored in GitLab.
RemediationApply the necessary patches or updates provided by GitLab to fix the vulnerability.
CVSS Score9.8
EPSS Score0.25456
CVE IDCVE-2022-0735
CWE IDCWE-863
Shodan Queryhttp.title:"GitLab"cpe:"cpe:2.3:a:gitlab:gitlab"http.title:"gitlab"
Fofa Querytitle="gitlab"
Tags cve cve2022 gitlab vuln

🔍 Vulnerability Description

GitLab CE/EE is susceptible to information disclosure. An attacker can access runner registration tokens using quick actions commands, thereby making it possible to obtain sensitive information, modify data, and/or execute unauthorized operations. Affected versions are from 12.10 before 14.6.5, from 14.7 before 14.7.4, and from 14.8 before 14.8.2.

🌐 HTTP Request

GET /users/sign_in HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/117.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-0735.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-0735.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A