PT-2020-13017 · Grafana+4 · Grafana+4

Published

2020-04-27

·

Updated

2024-03-06

·

CVE-2020-12052

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Grafana versions prior to 6.7.3
Description The issue concerns an annotation popup XSS in Grafana. No information is provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For versions prior to 6.7.3, update to version 6.7.3 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2020:4682
ALT-PU-2020-1966
ALT-PU-2020-2204
BIT-GRAFANA-2020-12052
CESA-2020_4682
CVE-2020-12052
RHSA-2020:2796
RHSA-2020:2861
RHSA-2020:4682
RHSA-2020_4682
SUSE-RU-2020:2072-1
SUSE-RU-2020:2161-1
SUSE-SU-2020:1901-1
SUSE-SU-2020:2911-1
SUSE-SU-2021:1233-1
SUSE-SU-2021:1962-1

Affected Products

Alt Linux
Almalinux
Centos
Grafana
Red Hat