CVE-2021-27358
HIGH NUCLEIGrafana 6.7.3-7.4.1 - DoS
Title source: llmDescription
The snapshot feature in Grafana 6.7.3 through 7.4.1 can allow an unauthenticated remote attackers to trigger a Denial of Service via a remote API call if a commonly used configuration is set.
Nuclei Templates (1)
Grafana Unauthenticated Snapshot Creation
HIGHby pdteam,bing0o
Shodan:
title:"Grafana" || cpe:"cpe:2.3:a:grafana:grafana" || http.title:"grafana"
FOFA:
title="grafana" || app="grafana"
Scores
CVSS v3
7.5
EPSS
0.8743
EPSS Percentile
99.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Details
Status
published
Products (3)
grafana/grafana
6.7.3 - 7.4.1
grafana/grafana
6.7.3 - 7.4.2Go
netapp/e-series_performance_analyzer
Published
Mar 18, 2021
Tracked Since
Feb 18, 2026