Skip to content

Known CVE

OpenTSDB <= 2.4.1 - Unauthenticated RCE via Gnuplot Injection

OpenTSDB contains a command injection caused by insufficient validation of parameters passed to the legacy HTTP query API, letting attackers inject crafted OS commands and execute malicious code, exploit requires sending crafted parameters.

CVE-2023-25826

Critical2023CVSS 9.8CWE-78

cve2023 · opentsdb · rce · oast · unauth · packetstorm

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website