vendor:
GitLab Community Edition
by:
@4D0niiS
5.5
CVSS
MEDIUM
User Enumeration
200
CWE
Product Name: GitLab Community Edition
Affected Version From: 13.10.2000
Affected Version To: 13.10.2003
Patch Exists: YES
Related CWE:
CPE: a:gitlab:gitlab_community_edition:13.10.3
Platforms Tested: Kali Linux 2021.1
2021
GitLab Community Edition (CE) 13.10.3 – User Enumeration
This exploit script allows an attacker to enumerate usernames in a GitLab CE instance.
Mitigation:
Implement proper access controls and rate limiting to prevent user enumeration.