CVE-2024-8631
Gitlab
CVE-2024-8631: GitLab Privilege Escalation Vulnerability. This CVE describes a critical security flaw in GitLab EE where a user with the Admin Group Member custom role could escalate their privileges. Affected versions include all versions from 16.6 before 17.1.7, 17.2 before 17.2.5, and 17.3 before 17.3.2. With a CVSS score of 7.2 and a SOCRadar Vulnerability Risk Score (SVRS) of 66, this vulnerability requires attention. Although the SVRS is not in the critical range (above 80), the potential for unauthorized access and control within GitLab instances makes it a significant risk. Applying the security patches is crucial. This exploit being "In The Wild" further amplifies the urgency, as it indicates active exploitation attempts. Organizations using GitLab should prioritize patching to mitigate potential threats and maintain the integrity of their systems.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.