cbcvebase.
CVE-2020-13347
published 2020-10-07

CVE-2020-13347: A command injection vulnerability was discovered in Gitlab runner versions prior to 13.2.4, 13.3.2 and 13.4.1. When the runner is configured on a Windows…

PriorityP354critical9.1CVSS 3.1
AVNACLPRHUINSCCHIHAH
EPSS
2.28%
81.2th percentile
A command injection vulnerability was discovered in Gitlab runner versions prior to 13.2.4, 13.3.2 and 13.4.1. When the runner is configured on a Windows system with a docker executor, which allows the attacker to run arbitrary commands on Windows host, via DOCKER_AUTH_CONFIG build variable.

Affected

8 ranges
VendorProductVersion rangeFixed in
gitlabgitlab
gitlabgitlab>= 12.0.0 < 13.2.413.2.4
gitlabgitlab>= 13.3.0 < 13.3.213.3.2
gitlabgitlab>= 13.4.0 < 13.4.113.4.1
gitlabgitlab_runner
gitlabgitlab_runner
gitlabgitlab_runner
gitlabgitlab_runner

CVSS provenance

nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
nvdv2.09.0CRITICALAV:N/AC:L/Au:S/C:C/I:C/A:C
osv9.1CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.