CVE-2020-8920

CVE-2020-8920

An information leak vulnerability exists in Gerrit versions prior to 2.14.22, 2.15.21, 2.16.25, 3.0.15, 3.1.10, 3.2.5 where an overoptimization with the FilteredRepository wrapper skips the verification of access on All-Users repositories, allowing an attacker to get read access to all users’ personal information associated with their accounts.

Source: CVE-2020-8920

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다