Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

M4Lv0

#30035of 56,330
9Total CVSS
Vulnerabilities · 1
PT-2018-18954
9.0
2018-07-02
Paessler · Prtg Network Monitor · CVE-2018-9276
**Name of the Vulnerable Software and Affected Versions** PRTG Network Monitor versions prior to 18.2.39 **Description** An issue was discovered that allows an attacker with access to the PRTG System Administrator web console and administrative privileges to exploit an OS command injection vulnerability. This can be done by sending malformed parameters in sensor or notification management scenarios, affecting both the server and devices. **Recommendations** For versions prior to 18.2.39, update to version 18.2.39 or later to resolve the issue. As a temporary workaround, consider restricting access to the PRTG System Administrator web console to minimize the risk of exploitation. Avoid using malformed parameters in sensor or notification management scenarios until the issue is resolved.