CVE-2020-13379

HIGH EXPLOITED IN THE WILD NUCLEI

Grafana 3.0.1-7.0.1 - Unauthenticated Server-Side Request Forgery via Avatar Feature

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2020-13379 has been observed exploited in the wild (reported by VulnCheck KEV, InTheWild.io). EIP tracks 2 public exploits from researchers including mostwanted002, vadimgggg. A Nuclei detection template is also available.

AI-analyzed exploit summary This script exploits a Denial of Service (DoS) vulnerability in Grafana by sending a crafted request to the avatar endpoint, causing the server to crash due to improper handling of template injection.

Description

The avatar feature in Grafana 3.0.1 through 7.0.1 has an SSRF Incorrect Access Control issue. This vulnerability allows any unauthenticated user/client to make Grafana send HTTP requests to any URL and return its result to the user/client. This can be used to gain information about the network that Grafana is running on. Furthermore, passing invalid URL objects could be used for DOS'ing Grafana via SegFault.

Exploits (2)

exploitdb WORKING POC
by mostwanted002 · bashdoslinux
https://www.exploit-db.com/exploits/48638

This script exploits a Denial of Service (DoS) vulnerability in Grafana by sending a crafted request to the avatar endpoint, causing the server to crash due to improper handling of template injection.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Grafana 3.0.1 - 7.0.1
No auth needed
Prerequisites: Target Grafana instance URL
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
github WORKING POC 1 stars
by vadimgggg · pythonpoc
https://github.com/vadimgggg/CVE-PoC/tree/main/CVE-2020-13379

This repository contains a functional exploit for CVE-2020-13379, an SSRF vulnerability in Grafana. The exploit leverages a crafted URL to bypass access controls and perform SSRF attacks.

Classification
Working Poc 90%
Attack Type
Ssrf
Complexity
Trivial
Reliability
Reliable
Target: Grafana 5.4.3
No auth needed
Prerequisites: Docker environment · Access to the target Grafana instance
mistral-large-3 · analyzed Feb 27, 2026 Full analysis →

Nuclei Templates (1)

Grafana 3.0.1-7.0.1 - Server-Side Request Forgery
HIGHVERIFIEDby Joshua Rogers
Shodan: title:"Grafana" || cpe:"cpe:2.3:a:grafana:grafana" || http.title:"grafana"
FOFA: title="grafana" || app="grafana"

References (28)

Core 28
Core References
Release Notes, Vendor Advisory x_refsource_misc
https://community.grafana.com/t/release-notes-v6-7-x/27119
Mailing List, Third Party Advisory x_refsource_confirm
http://www.openwall.com/lists/oss-security/2020/06/03/4
Release Notes, Vendor Advisory x_refsource_misc
https://community.grafana.com/t/release-notes-v7-0-x/29381
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20200608-0006/
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2020/06/09/2
Mailing List, Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00060.html
Exploit, Third Party Advisory x_refsource_misc
https://mostwanted002.cf/post/grafanados/
Exploit, Third Party Advisory, VDB Entry x_refsource_misc
http://packetstormsecurity.com/files/158320/Grafana-7.0.1-Denial-Of-Service.html
Mailing List, Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00083.html
Exploit, Third Party Advisory x_refsource_misc
https://rhynorater.github.io/CVE-2020-13379-Write-Up
Mailing List, Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00009.html
Mailing List, Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00017.html

Scores

CVSS v3 8.2
EPSS 0.9986
EPSS Percentile 100.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

Details

VulnCheck KEV 2024-03-07
InTheWild.io 2021-04-18
CWE
CWE-918
Status published
Products (7)
fedoraproject/fedora 31
fedoraproject/fedora 32
grafana/grafana 3.0.1 - 6.7.4Go
grafana/grafana 3.0.1 - 7.0.1
netapp/e-series_performance_analyzer
opensuse/backports_sle 15.0 sp1 (2 CPE variants)
opensuse/leap 15.2
Published Jun 03, 2020
Tracked Since Feb 18, 2026