Логотип exploitDog
product: "grafana"
Консоль
Логотип exploitDog

exploitDog

product: "grafana"

Количество 380

Количество 380

debian логотип

CVE-2019-15043

почти 6 лет назад

In Grafana 2.x through 6.x before 6.3.4, parts of the HTTP API allow u ...

CVSS3: 7.5
EPSS: Критический
ubuntu логотип

CVE-2019-13068

почти 6 лет назад

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2019-13068

почти 6 лет назад

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2019-13068

почти 6 лет назад

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2018-18625

около 5 лет назад

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > General" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2018-18625

около 5 лет назад

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > General" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2018-18625

около 5 лет назад

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > General" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2018-18625

около 5 лет назад

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > Gene ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2018-18624

около 5 лет назад

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2018-18624

около 5 лет назад

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2018-18624

около 5 лет назад

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2018-18624

около 5 лет назад

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Pan ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2018-18623

около 5 лет назад

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2018-18623

около 5 лет назад

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2018-18623

около 5 лет назад

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2018-18623

около 5 лет назад

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: t ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2018-1000816

больше 6 лет назад

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Scripting (XSS) vulnerability in Influxdb and Graphite query editor that can result in Running arbitrary js code in victims browser.. This attack appear to be exploitable via Authenticated user must click on the input field where the payload was previously inserted..

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2018-1000816

больше 6 лет назад

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Scripting (XSS) vulnerability in Influxdb and Graphite query editor that can result in Running arbitrary js code in victims browser.. This attack appear to be exploitable via Authenticated user must click on the input field where the payload was previously inserted..

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-1000816

больше 6 лет назад

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Scripting (XSS) vulnerability in Influxdb and Graphite query editor that can result in Running arbitrary js code in victims browser.. This attack appear to be exploitable via Authenticated user must click on the input field where the payload was previously inserted..

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-1000816

больше 6 лет назад

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Sc ...

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2019-15043

In Grafana 2.x through 6.x before 6.3.4, parts of the HTTP API allow u ...

CVSS3: 7.5
91%
Критический
почти 6 лет назад
ubuntu логотип
CVE-2019-13068

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

CVSS3: 5.4
7%
Низкий
почти 6 лет назад
nvd логотип
CVE-2019-13068

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).

CVSS3: 5.4
7%
Низкий
почти 6 лет назад
debian логотип
CVE-2019-13068

public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows ...

CVSS3: 5.4
7%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2018-18625

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > General" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
redhat логотип
CVE-2018-18625

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > General" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2018-18625

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > General" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
debian логотип
CVE-2018-18625

Grafana 5.3.1 has XSS via a link on the "Dashboard > All Panels > Gene ...

CVSS3: 6.1
1%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2018-18624

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
redhat логотип
CVE-2018-18624

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2018-18624

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
debian логотип
CVE-2018-18624

Grafana 5.3.1 has XSS via a column style on the "Dashboard > Table Pan ...

CVSS3: 6.1
1%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2018-18623

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
0%
Низкий
около 5 лет назад
redhat логотип
CVE-2018-18623

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2018-18623

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: this issue exists because of an incomplete fix for CVE-2018-12099.

CVSS3: 6.1
0%
Низкий
около 5 лет назад
debian логотип
CVE-2018-18623

Grafana 5.3.1 has XSS via the "Dashboard > Text Panel" screen. NOTE: t ...

CVSS3: 6.1
0%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2018-1000816

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Scripting (XSS) vulnerability in Influxdb and Graphite query editor that can result in Running arbitrary js code in victims browser.. This attack appear to be exploitable via Authenticated user must click on the input field where the payload was previously inserted..

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
redhat логотип
CVE-2018-1000816

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Scripting (XSS) vulnerability in Influxdb and Graphite query editor that can result in Running arbitrary js code in victims browser.. This attack appear to be exploitable via Authenticated user must click on the input field where the payload was previously inserted..

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2018-1000816

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Scripting (XSS) vulnerability in Influxdb and Graphite query editor that can result in Running arbitrary js code in victims browser.. This attack appear to be exploitable via Authenticated user must click on the input field where the payload was previously inserted..

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2018-1000816

Grafana version confirmed for 5.2.4 and 5.3.0 contains a Cross Site Sc ...

CVSS3: 5.4
0%
Низкий
больше 6 лет назад

Уязвимостей на страницу