CVE-2024-10007 - GitHub Enterprise Server Arbitrary Code Execution Vulnerability

2 weeks ago 8
ARTICLE AD BOX
CVE ID : CVE-2024-10007
Published : Nov. 7, 2024, 9:15 p.m. | 24 minutes ago
Description : A path collision and arbitrary code execution vulnerability was identified in GitHub Enterprise Server that allowed container escape and privilege escalation to root via the ghe-firejail path. This vulnerability affected all versions of GitHub Enterprise prior to 3.15 and was fixed in versions 3.14.3, 3.13.6, 3.12.11, and 3.11.17. This vulnerability was reported via the GitHub Bug Bounty program.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article