Risk Scores
EPSS Score
93.54%
99.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 16.1.0, 16.2.0, 16.3.0 |
| Bitnami | gitlab | 16.1.0, 16.2.0, 16.3.0 |
Timeline
- CVE Published
- Jan 20, 1970 Metasploit Module
- Jan 20, 1970 Nuclei Template
- Jan 20, 1970 Fix Commit
- Jan 21, 1970 Security Advisory
- Jan 16, 2024 PoC Published
- Jan 17, 2024 EPSS Score
- Jan 24, 2024 EPSS Score
- Feb 13, 2024 EPSS Score
- Mar 12, 2024 EPSS Score
- Mar 14, 2024 PoC Published
- Mar 15, 2024 EPSS Score
References
- https://hackerone.com/reports/2293343 url
- https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/ url
- https://gitlab.com/gitlab-org/gitlab/-/issues/436084 url
- https://www.vicarius.io/vsociety/posts/critical-gitlab-account-takeover-vulnerability-cve-2023-7028 url
- https://nvd.nist.gov/vuln/detail/CVE-2023-7028 url
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-7028 url
- [MàJ] Multiples Vulnérabilités dans GitLab advisory