Security Advisory

CVE-2014-5023

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-07-22 14:00:00
Last updated 2024-09-17 03:48:16
Assigner mitre
State PUBLISHED

Description

Repository.php in Gitter, as used in Gitlist, allows remote attackers with commit privileges to execute arbitrary commands via shell metacharacters in a branch name, as demonstrated by a "git checkout -b" command.