Sploitus

CVE-2021-43798

44 known exploits for CVE-2021-43798

Grafana is an open-source platform for monitoring and observability. Grafana versions 8.0.0-beta1 through 8.3.0 (except for patched versions) iss vulnerable to directory traversal, allowing access to local files. The vulnerable URL path is: `<grafana_host_url>/public/plugins//`, where is the plugin ID for any installed plugin. At no time has Grafana Cloud been vulnerable. Users are advised to upgrade to patched versions 8.0.7, 8.1.8, 8.2.7, or 8.3.1. The GitHub Security Advisory contains more information about vulnerable URL paths, mitigation, and the disclosure timeline.

Affected products
Alt Linux, Grafana, Suse
Grafana
< 8.0.7, 8.1.8, 8.2.7, 8.0.0, 8.3.0
Fix
Available
CVSS 3.1
7.5 HIGH
EPSS
88.8% (100th percentile)
Weakness
CWE-22
NVD status
Analyzed
Published
2021-12-07
CVE-2021-43798 at NVD
Authoritative description, scoring and affected products

44 known exploits for CVE-2021-43798

Proof-of-concept code and exploit modules indexed by Sploitus

Exploit for Path Traversal in Grafana
2026-07-24 sbimoxaGITHUB
Exploit for Path Traversal in Grafana
2026-06-02 Okymi-XGITHUB
Exploit for Path Traversal in Grafana
2026-05-26 AsbawyGITHUB
Exploit for Path Traversal in Grafana
2026-01-08 baktistrGITHUB
Exploit for Path Traversal in Grafana
2025-11-27 f3d0rqGITHUB
Exploit for Path Traversal in Grafana
2025-11-27 f3d0rqGITHUB
Exploit for Path Traversal in Grafana
2025-02-12 ravi5hankaGITHUB
Exploit for Path Traversal in Grafana
2025-01-26 davidr-ioGITHUB
Exploit for Path Traversal in Grafana
2024-12-14 wezoomagencyGITHUB
Grafana Plugin Path Traversal
2024-09-01 h00die, jordyv, metasploit.comPACKETSTORMRuby
Exploit for Path Traversal in Grafana
2024-03-27 ticofookfookGITHUB
Exploit for Path Traversal in Grafana
2024-03-04 K3ysTr0K3RGITHUB
Exploit for Path Traversal in Grafana
2023-12-21 wagneralvesGITHUB
Exploit for Path Traversal in Grafana
2023-09-03 victorhorowitzGITHUB
Exploit for Path Traversal in Grafana
2023-05-12 FAOG99GITHUB
Exploit for Path Traversal in Grafana
2023-01-28 mauricelambertGITHUB
Exploit for Path Traversal in Grafana
2023-01-09 Ki11i0n4ir3GITHUB
Exploit for Path Traversal in Grafana
2022-10-08 hupe1980GITHUB
Exploit for Path Traversal in Grafana
2022-02-25 Jroo1053GITHUB
Exploit for Path Traversal in Grafana
2022-01-18 aymenbouferroumGITHUB
Exploit for Path Traversal in Grafana
2022-01-06 rnsssGITHUB
Exploit for Path Traversal in Grafana
2021-12-21 halencarjuniorGITHUB
Exploit for Path Traversal in Grafana
2021-12-17 k3rwinGITHUB
Exploit for Path Traversal in Grafana
2021-12-17 k3rwinGITHUB
Exploit for Path Traversal in Grafana
2021-12-11 LongWayHomieGITHUB
Exploit for Path Traversal in Grafana
2021-12-11 pedrohavayGITHUB
Grafana 8.3.0 - Directory Traversal and Arbitrary File Read Exploit
2021-12-09 s1ghZDTPython
Grafana 8.3.0 - Directory Traversal and Arbitrary File Read
2021-12-09 s1ghEXPLOITDBPython
Grafana 8.3.0 Directory Traversal / Arbitrary File Read
2021-12-09 s1ghPACKETSTORMPython
Exploit for Path Traversal in Grafana
2021-12-09 z3n70GITHUB
Exploit for Path Traversal in Grafana
2021-12-09 fanygitGITHUB
Exploit for Path Traversal in Grafana
2021-12-08 j-jassonGITHUB
Exploit for Path Traversal in Grafana
2021-12-08 M0geGITHUB
Exploit for Path Traversal in Grafana
2021-12-08 Tom-Cooper11GITHUB
Exploit for Path Traversal in Grafana
2021-12-08 s1ghGITHUB
Exploit for Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) in Zulip
2021-12-08 scopionGITHUB
Exploit for Path Traversal in Grafana
2021-12-07 zer0yuGITHUB
Exploit for Path Traversal in Grafana
2021-12-07 ScorpionsMAXGITHUB
Exploit for Path Traversal in Grafana
2021-12-07 Mr-xnGITHUB
Exploit for Path Traversal in Grafana
2021-12-07 asaotomoGITHUB
Exploit for Path Traversal in Grafana
2021-12-07 A-D-TeamGITHUB
Exploit for Path Traversal in Grafana
2021-12-07 kenuosecGITHUB
Exploit for Path Traversal in Grafana
2021-12-06 taythebotGITHUB
Grafana Plugin Path Traversal
2021-12-02 h00die, jordyvMETASPLOITRuby