Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26616
HistorySep 04, 2020 - 2:17 a.m.

Arbitrary File Read

2020-09-0402:17:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

0.001 Low

EPSS

Percentile

30.1%

github.com/grafana/grafana is vulnerable to arbitrary file read. Lack of proper handling of MySQL data source connection string allows an authenticated user having privilege to modify the configuration to read arbitrary files.