CVE-2023-1387
grafana: JWT token leak to data source
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Grafana is an open-source platform for monitoring and observability.
Starting with the 9.1 branch, Grafana introduced the ability to search for a JWT in the URL query parameter auth_token and use it as the authentication token.
By enabling the "url_login" configuration option (disabled by default), a JWT might be sent to data sources. If an attacker has access to the data source, the leaked token could be used to authenticate to Grafana.
A flaw was found in Grafana. This flaw allows a remote, authenticated attacker to obtain sensitive information caused by an issue when enabling the "url_login" configuration option. By sending a specially crafted request, an attacker can obtain JWT information and use this to launch further attacks against the affected system.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-03-14 CVE Reserved
- 2023-04-26 CVE Published
- 2024-08-02 CVE Updated
- 2024-08-02 First Exploit
- 2024-11-16 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
- CAPEC-116: Excavation
References (5)
URL | Tag | Source |
---|---|---|
https://security.netapp.com/advisory/ntap-20230609-0003 |
URL | Date | SRC |
---|---|---|
https://github.com/grafana/bugbounty/security/advisories/GHSA-5585-m9r5-p86j | 2024-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://grafana.com/security/security-advisories/cve-2023-1387 | 2023-06-09 | |
https://access.redhat.com/security/cve/CVE-2023-1387 | 2024-02-08 | |
https://bugzilla.redhat.com/show_bug.cgi?id=2186322 | 2024-02-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Grafana Search vendor "Grafana" | Grafana Search vendor "Grafana" for product "Grafana" | >= 9.1.0 < 9.2.17 Search vendor "Grafana" for product "Grafana" and version " >= 9.1.0 < 9.2.17" | - |
Affected
| ||||||
Grafana Search vendor "Grafana" | Grafana Search vendor "Grafana" for product "Grafana" | >= 9.3.0 < 9.3.13 Search vendor "Grafana" for product "Grafana" and version " >= 9.3.0 < 9.3.13" | - |
Affected
| ||||||
Grafana Search vendor "Grafana" | Grafana Search vendor "Grafana" for product "Grafana" | >= 9.4.0 < 9.4.9 Search vendor "Grafana" for product "Grafana" and version " >= 9.4.0 < 9.4.9" | - |
Affected
|