Description
Prometheus is a monitoring system and time series database
Acunetix determined that it was possible to access Prometheus interface without authentication.
Remediation
Restrict access to Prometheus
References
Related Vulnerabilities
PostgreSQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-5288)
WordPress 4.5.x Multiple Vulnerabilities (4.5 - 4.5.29)
WordPress Plugin Simple Download Button Shortcode 'file' Parameter Information Disclosure (1.0)
WordPress Plugin WebP Express Arbitrary File Disclosure (0.14.10)