Sunday, March 29, 2020

New vulnerability on the NVD: CVE-2020-10791 (openitcockpit)

app/Plugin/GrafanaModule/Controller/GrafanaConfigurationController.php in openITCOCKPIT before 3.7.3 allows remote authenticated users to trigger outbound TCP requests (aka SSRF) via the Test Connection feature (aka testGrafanaConnection) of the Grafana Module.

Published at: March 25, 2020 at 04:15PM
View on website

No comments:

Post a Comment