CVE-2023-22631
2.7
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
Summary
PRTG Network Monitor before 23.1.82 allows remote attackers to write to files via the HTTP XML/REST Sensor.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Paessler | PRTG Network Monitor | 0 < 23.1.82 | affected |
Weaknesses
- CWE-88: CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://www.paessler.com/prtg
- https://helpdesk.paessler.com/en/support/solutions/articles/76000076688-is-prtg-affected-by-cve-2023-22631-or-cve-2023-22632-
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.