Loading
app/Plugin/GrafanaModule/Controller/GrafanaConfigurationController.php in openITCOCKPIT before 3.7.3 allows remote authenticated users to trigger outbound TCP requests (aka SSRF) via the Test Connection feature (aka testGrafanaConnection) of the Grafana Module.
Cite this page
CVE-2020-10791. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2020-10791
Use CWE-918, It-Novum vendor hub and Openitcockpit product page to widen CVE-2020-10791 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-10789, CVE-2020-10788 and CVE-2026-24893 for nearby disclosures in the same product family.