CVE-2024-55947
Gogs is an open source self-hosted Git service. A malicious user is able to write a file to an arbitrary path on the server to gain SSH access to the server. The vulnerability is fixed in 0.13.1.
- Gogs
- < 0.13.1
- Fix
- Available
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 75.2% (99th percentile)
- Weakness
- CWE-22
- NVD status
- Analyzed
- Published
- 2024-12-23
CVE-2024-55947 at NVD
2 known exploits for CVE-2024-55947
Proof-of-concept code and exploit modules indexed by Sploitus