Known CVE
OpenTSDB <= 2.4.1 - Unauthenticated RCE via Gnuplot Injection
OpenTSDB contains a command injection caused by insufficient validation of parameters passed to the legacy HTTP query API, letting attackers inject crafted OS commands and execute malicious code, exploit requires sending crafted parameters.
CVE-2023-25826
Critical2023CVSS 9.8CWE-78
cve2023 · opentsdb · rce · oast · unauth · packetstorm
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website