HTTP: GitLab Community and Enterprise Edition Web IDE Stored Cross-Site Scripting

This signature detects attempts to exploit a known cross-site scripting vulnerability against GitLab Community and Enterprise Edition. It is due to insufficient validation of user-supplied input. Attackers can steal cookie-based authentication credentials and launch other attacks.

Extended Description

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. It was possible for an attacker to trigger a stored XSS vulnerability via user interaction with a crafted URL in the WebIDE beta.

Affected Products

Gitlab gitlab

References

CVE: CVE-2023-2164

Short Name
HTTP:XSS:GILAB-SXSS-CE-EE
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2023-2164 Community Cross-Site Edition Enterprise GitLab IDE Scripting Stored Web and
Release Date
09/28/2023
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3693
False Positive
Unknown
Vendors

Gitlab

Found a potential security threat?