摘要:
In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write external alert instances to also write alert rules.
安全等级: Low
公告ID: KylinSec-SA-2024-3846
发布日期: 2024年9月30日
关联CVE: CVE-2024-8118
In Grafana, the wrong permission is applied to the alert rule write API endpoint, allowing users with permission to write external alert instances to also write alert rules.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2024-8118 | KY3.4-5A | grafana | Unaffected |
CVE-2024-8118 | KY3.5.2 | grafana | Unaffected |
CVE-2024-8118 | V6 | grafana | Unaffected |