CVE-2023-2825 is a critical path traversal vulnerability affecting GitLab CE/EE version 16.0.0. An unauthenticated attacker can exploit this flaw to read arbitrary files on the server if an attachment exists within a public project nested at least five groups deep. With a CVSS score of 7.5 (HIGH) and an EPSS score indicating high exploitability, this vulnerability poses a significant risk due to its low attack complexity and potential for sensitive data exposure. Exploit code, including Metasploit modules and Nuclei templates, is publicly available, and the vulnerability has garnered substantial community discussion and media coverage, suggesting a high likelihood of active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.0.0CPE matchmatch criteria | cpe:2.3:a:gitlab:gitlab:16.0.0:*:*:*:community:*:*:* | ||
16.0.0CPE matchmatch criteria | cpe:2.3:a:gitlab:gitlab:16.0.0:*:*:*:enterprise:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.