CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. Exploitation may require the attacker to be authenticated.
CVE
CVE-2019-11218
Severity
HIGH
CVSS
8.8
EPSS
1.18%
Original NVD Description
Improper handling of extra parameters in the AccountController (User Profile edit) in Jakub Chodounsky Bonobo Git Server before 6.5.0 allows authenticated users to gain application administrator privileges via additional form parameter submissions.
Related CVEs
Other vulnerabilities affecting the same vendor(s)