Количество 4
Количество 4
CVE-2024-6322
Access control for plugin data sources protected by the ReqActions json field of the plugin.json is bypassed if the user or service account is granted associated access to any other data source, as the ReqActions check was not scoped to each specific datasource. The account must have prior query access to the impacted datasource.
CVE-2024-6322
Access control for plugin data sources protected by the ReqActions json field of the plugin.json is bypassed if the user or service account is granted associated access to any other data source, as the ReqActions check was not scoped to each specific datasource. The account must have prior query access to the impacted datasource.
CVE-2024-6322
Access control for plugin data sources protected by the ReqActions jso ...
GHSA-hh8p-374f-qgr5
Grafana plugin data sources vulnerable to access control bypass
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-6322 Access control for plugin data sources protected by the ReqActions json field of the plugin.json is bypassed if the user or service account is granted associated access to any other data source, as the ReqActions check was not scoped to each specific datasource. The account must have prior query access to the impacted datasource. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-6322 Access control for plugin data sources protected by the ReqActions json field of the plugin.json is bypassed if the user or service account is granted associated access to any other data source, as the ReqActions check was not scoped to each specific datasource. The account must have prior query access to the impacted datasource. | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-6322 Access control for plugin data sources protected by the ReqActions jso ... | CVSS3: 5.4 | 0% Низкий | больше 1 года назад | |
GHSA-hh8p-374f-qgr5 Grafana plugin data sources vulnerable to access control bypass | CVSS3: 4.4 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу