CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects GitLab. Its EPSS score suggests a 42.1% probability of exploitation in the next 30 days. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2013-4490
Severity
MEDIUM
CVSS
6.5
EPSS
42.14%
GitLab
Original NVD Description
The SSH key upload feature (lib/gitlab_keys.rb) in gitlab-shell before 1.7.3, as used in GitLab 5.0 before 5.4.1 and 6.x before 6.2.3, allows remote authenticated users to execute arbitrary commands via shell metacharacters in the public key.