Lucene search

K
f5F5F5:K00843201
HistoryApr 02, 2021 - 12:00 a.m.

K00843201 : Grafana vulnerability CVE-2019-15043

2021-04-0200:00:00
my.f5.com
22

7.2 High

AI Score

Confidence

High

0.281 Low

EPSS

Percentile

96.9%

Security Advisory Description

In Grafana 2.x through 6.x before 6.3.4, parts of the HTTP API allow unauthenticated use. This makes it possible to run a denial of service attack against the server running Grafana. (CVE-2019-15043)

Impact

An unauthorized user may be able to leverage the Grafana component to run a snapshot task on the system.