Grafana是Grafana开源的一套提供可视化监控界面的开源监控工具。该工具主要用于监控和分析Graphite、InfluxDB和Prometheus等。 Grafana存在安全漏洞,该漏洞源于客户端路径遍历和开放重定向结合,可能导致跨站脚本攻击。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | An open redirect vulnerability in Grafana can be chained with other issues, such as XSS or SSRF, to increase impact. An attacker may exploit the redirect to target internal services or deliver malicious JavaScript, potentially leading to internal data exposure or account takeover. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-4123.yaml | POC详情 |
| 2 | Script to exploit Grafana CVE-2025-4123: XSS and Full-Read SSRF | https://github.com/NightBloodz/CVE-2025-4123 | POC详情 |
| 3 | CVE-2025-4123 | https://github.com/kk12-30/CVE-2025-4123 | POC详情 |
| 4 | None | https://github.com/imbas007/CVE-2025-4123-template | POC详情 |
| 5 | CVE-2025-4123 - Grafana Tool | https://github.com/ynsmroztas/CVE-2025-4123-Exploit-Tool-Grafana- | POC详情 |
| 6 | CVE-2025-4123 | https://github.com/B1ack4sh/Blackash-CVE-2025-4123 | POC详情 |
| 7 | Escaner para encontrar vulnerabilidad CVE-2025-4123 grafana | https://github.com/DesDoTvl/CVE-2025-4123grafana | POC详情 |
| 8 | None | https://github.com/punitdarji/Grafana-cve-2025-4123 | POC详情 |
| 9 | Grafana CVE-2025-4123-POC | https://github.com/ItsNee/Grafana-CVE-2025-4123-POC | POC详情 |
| 10 | CVE-2025-4123 Grafana Open Redirect Exploit | https://github.com/MorphyKutay/CVE-2025-4123-Exploit | POC详情 |
| 11 | CVE-2025-4123 | https://github.com/Ashwesker/Blackash-CVE-2025-4123 | POC详情 |
| 12 | Script to exploit Grafana CVE-2025-4123: XSS and Full-Read SSRF | https://github.com/NightBlood0/CVE-2025-4123 | POC详情 |
| 13 | Script to exploit Grafana CVE-2025-4123: XSS and Full-Read SSRF | https://github.com/NightBloodZ/CVE-2025-4123 | POC详情 |
| 14 | CVE-2025-4123 | https://github.com/Ashwesker/Ashwesker-CVE-2025-4123 | POC详情 |
未找到公开 POC。
登录以生成 AI POC暂无评论