Description
Grafana has an authentication bypass vulnerability. An attacker can view without authentication the Grafana's snapshot associated with the lowest database key .
Remediation
Upgrade to the latest version of Grafana
References
Related Vulnerabilities
phpMyAdmin 7PK - Security Features Vulnerability (CVE-2016-9850)
MySQL CVE-2020-14838 Vulnerability (CVE-2020-14838)
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-3664)
Magento Improper Privilege Management Vulnerability (CVE-2020-9630)
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-17774)