Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Dashboard Import Overwrites ACL — Editor Privilege Escalation to Dashboard Admin
Vulnerability Description
An Editor can overwrite a dashboard not owned by them to acquire admin on that specific dashboard. The user must have write access to the dashboard to escalate privilege.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
Vulnerability Type
N/A
Vulnerability Title
Grafana OSS 安全漏洞
Vulnerability Description
Grafana OSS是Grafana开源的一个可视化仪表盘。 Grafana OSS存在安全漏洞,该漏洞源于编辑器可以覆盖非其拥有的仪表板,可能导致在该特定仪表板上获取管理员权限。
CVSS Information
N/A
Vulnerability Type
N/A