Description
An information-disclosure flaw was found in Grafana through 6.7.3. The database directory /var/lib/grafana and database file /var/lib/grafana/grafana.db are world readable. This can result in exposure of sensitive information (e.g., cleartext or encrypted datasource passwords).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2203 | An information-disclosure flaw was found in Grafana through 6.7.3. The database directory /var/lib/grafana and database file /var/lib/grafana/grafana.db are world readable. This can result in exposure of sensitive information (e.g., cleartext or encrypted datasource passwords). |
Github GHSA |
GHSA-3jq7-8ph8-63xm | Grafana information disclosure |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T11:56:52.049Z
Reserved: 2020-04-29T00:00:00.000Z
Link: CVE-2020-12458
No data.
Status : Modified
Published: 2020-04-29T16:15:11.760
Modified: 2024-11-21T04:59:44.517
Link: CVE-2020-12458
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA