As cited
Copy frozen at (site build).
vulnerabilities
Coordinated Grafana Exploitation Attempts on 28 September
GreyNoise detected a coordinated spike in exploitation attempts against CVE-2021-43798, a Grafana path traversal vulnerability that allows arbitrary file reads, on September 28. All attacking IP addresses were classified as malicious.
Why it matters: Organizations running Grafana instances should verify patching status for this vulnerability immediately, as the coordinated attack pattern indicates active exploitation campaigns targeting this known weakness.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Coordinated Grafana Exploitation Attempts on 28 September
GreyNoise detected a coordinated spike in exploitation attempts against CVE-2021-43798, a Grafana path traversal vulnerability that allows arbitrary file reads, on September 28. All attacking IP addresses were classified as malicious.
Why it matters: Organizations running Grafana instances should verify patching status for this vulnerability immediately, as the coordinated attack pattern indicates active exploitation campaigns targeting this known weakness.
- Source published
- First seen by Cybersecurity Tracker