Opentsdb

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 7
    Known Exploited: 0
    4
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-36812

    Remote Code Execution in OpenTSDB

    Last Modified: Feb 13, 2025
    Published: Jun 30, 2023

    CVE-2023-25827

    Cross-site Scripting in OpenTSDB

    Last Modified: Feb 12, 2025
    Published: May 03, 2023

    CVE-2023-25826

    Remote Code Execution in OpenTSDB

    Last Modified: Feb 13, 2025
    Published: May 03, 2023

    CVE-2020-35476

    A remote code execution vulnerability occurs in OpenTSDB through 2.4.0 via command injection in the yrange parameter. The yrange value is written to a gnuplot file in the /tmp directory. This file is then executed via the mygnuplot.sh shell script. (tsd/GraphHandler.java attempted to prevent command injections by blocking backticks but this is insufficient.)

    Last Modified: Nov 21, 2024
    Published: Dec 16, 2020

    CVE-2018-13003

    An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI.

    Last Modified: Nov 21, 2024
    Published: Jun 29, 2018
    Items Per Page
    Opentsdb Vulnerabilities & Security CVEs | CVE-DB