Description
The snapshot feature in Grafana 6.7.3 through 7.4.1 can allow an unauthenticated remote attackers to trigger a Denial of Service via a remote API call if a commonly used configuration is set.
Remediation
References
Related Vulnerabilities
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-3680)
WordPress Plugin Protected Posts Logout Button Security Bypass (1.4.5)
WordPress Plugin PostmagThemes Demo Import Arbitrary File Upload (1.0.7)
Jenkins Insufficient Session Expiration Vulnerability (CVE-2019-1003049)