CVE-2023-26735

CVE-2023-26735CVE-2023-26735

prometheus / blackbox_exporter

Description

blackbox_exporter v0.23.0 was discovered to contain an access control issue in its probe interface. This vulnerability allows attackers to detect intranet ports and services, as well as download resources. NOTE: this is disputed by third parties because authentication can be configured.

Scoring

CVSS 7.5 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Last modified2026-07-04
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.