Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-11110

Grafana through 6.7.1 allows stored XSS due to insufficient input protection in the originalUrl field, which allows an attacker to inject JavaScript code that will be executed after clicking on Open Original Dashboard after visiting the snapshot.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.676
EPSS Ranking 98.5%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2020-11110


Contact Us

Shodan ® - All rights reserved