Vulnerabilities (CVE)

Filtered by vendor Gitolite Subscribe
Filtered by product Gitolite
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-1572 1 Gitolite 1 Gitolite 2019-09-09 6.8 MEDIUM N/A
Directory traversal vulnerability in the Admin Defined Commands (ADC) feature in gitolite before 1.5.9.1 allows remote attackers to execute arbitrary commands via .. (dot dot) sequences in admin-defined commands.
CVE-2012-4506 2 Gitolite, Sitaram Chamarty 2 Gitolite, Gitolite 2019-09-09 4.6 MEDIUM N/A
Directory traversal vulnerability in gitolite 3.x before 3.1, when wild card repositories and a pattern matching "../" are enabled, allows remote authenticated users to create arbitrary repositories and possibly perform other actions via a .. (dot dot) in a repository name.