Loading HuntDB...

GHSA-crwp-wqxv-crr4

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

In TeslaMate before 1.27.2, there is unauthorized access to port 4000 for remote viewing and operation of user data. After accessing the IP address for the TeslaMate instance, an attacker can switch the port to 3000 to enter Grafana for remote operations. At that time, the default username and password can be used to enter the Grafana management console without logging in, a related issue to CVE-2022-23126.

Related CVEs

Key Information

GHSA ID
GHSA-crwp-wqxv-crr4
Published
March 27, 2024 6:30 AM
Last Modified
August 2, 2024 6:31 PM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 30, 2025 6:36 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.