Vulnerability index

Browse CVEs

35 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Prtg Network Monitor MEDIUM 6.5
CVE-2025-67835

Paessler PRTG Network Monitor before 25.4.114 allows Denial-of-Service (DoS) by an authenticated attacker via the Notification Contacts functionality.

Fix: 25.4.114.1032+
Fix from $1,600 2026-01-14
Prtg Network Monitor MEDIUM 6.1
CVE-2025-67833

Paessler PRTG Network Monitor before 25.4.114 allows XSS by an unauthenticated attacker via the tag parameter.

Fix: 25.4.114.1032+
Fix from $1,600 2026-01-14
Prtg Network Monitor MEDIUM 5.4
CVE-2025-67834

Paessler PRTG Network Monitor before 25.4.114 allows XSS by an unauthenticated attacker via the filter parameter.

Fix: 25.4.114.1032+
Fix from $1,600 2026-01-14
Prtg Network Monitor MEDIUM 6.1
CVE-2024-12833

Paessler PRTG Network Monitor SNMP Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to …

Fix: 25.1.102.1373+
Fix from $1,600 2025-02-11
Prtg Network Monitor MEDIUM 6.1
CVE-2023-51630

Paessler PRTG Network Monitor Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authenti…

Fix: 24.1.90.1306+
Fix from $1,600 2024-02-08
Prtg Network Monitor HIGH 7.2
CVE-2023-32781EPSS 14%

A command injection vulnerability was identified in PRTG 23.2.84.1566 and earlier versions in the HL7 sensor where an authenticated user with write p…

Fix: 23.3.86.1520+
Fix from $1,950 2023-08-09
Prtg Network Monitor HIGH 7.2
CVE-2023-32782EPSS 56%

A command injection was identified in PRTG 23.2.84.1566 and earlier versions in the Dicom C-ECHO sensor where an authenticated user with write permis…

Fix: 23.3.86.1520+
Fix from $1,950 2023-08-09
Prtg Network Monitor HIGH 8.8
CVE-2023-31452

A cross-site request forgery (CSRF) token bypass was identified in PRTG 23.2.84.1566 and earlier versions that allows remote attackers to perform act…

Fix: 23.3.86.1520+
Fix from $1,950 2023-08-09
Prtg Network Monitor MEDIUM 5.3
CVE-2022-35739

PRTG Network Monitor through 22.2.77.2204 does not prevent custom input for a device’s icon, which can be modified to insert arbitrary content into t…

Fix: 22.3.79.2108+
Fix from $1,600 2022-10-25
Prtg Network Monitor MEDIUM 5.4
CVE-2021-29643

PRTG Network Monitor before 21.3.69.1333 allows stored XSS via an unsanitized string imported from a User Object in a connected Active Directory inst…

Fix: 21.3.69.1333+
Fix from $1,600 2021-09-13
Prtg Network Monitor MEDIUM 5.3
CVE-2021-27220

An issue was discovered in PRTG Network Monitor before 21.1.66.1623. By invoking the screenshot functionality with prepared context paths, an attacke…

Fix: 21.1.66.1623+
Fix from $1,600 2021-03-31
Prtg Network Monitor MEDIUM 5.4
CVE-2020-14073

XSS exists in PRTG Network Monitor 20.1.56.1574 via crafted map properties. An attacker with Read/Write privileges can create a map, and then use the…

No fix yet
Fix from $1,600 2020-06-23
Prtg Network Monitor MEDIUM 5.3
CVE-2020-11547EPSS 52%

PRTG Network Monitor before 20.1.57.1745 allows remote unauthenticated attackers to obtain information about probes running or the server itself (CPU…

Fix: 20.1.57.1745+
Fix from $1,600 2020-04-05
Prtg Network Monitor CRITICAL 9.8
CVE-2020-10374

A webserver component in Paessler PRTG Network Monitor 19.2.50 to PRTG 20.1.56 allows unauthenticated remote command execution via a crafted POST req…

Fix: after 20.1.56
Fix from $2,300 2020-03-30
Prtg Network Monitor HIGH 7.2
CVE-2019-11074

A Write to Arbitrary Location in Disk vulnerability exists in PRTG Network Monitor 19.1.49 and below that allows attackers to place files in arbitrar…

Fix: after 19.1.49
Fix from $1,950 2020-03-17
Prtg Network Monitor HIGH 7.2
CVE-2019-11073EPSS 6%

A Remote Code Execution vulnerability exists in PRTG Network Monitor before 19.4.54.1506 that allows attackers to execute code due to insufficient sa…

Fix: 19.4.54.1506+
Fix from $1,950 2020-03-16
Prtg Network Monitor MEDIUM 5.5
CVE-2019-19119

An issue was discovered in PRTG 7.x through 19.4.53. Due to insufficient access control on local registry keys for the Core Server Service, a non-adm…

Fix: after 19.4.53.
Fix from $1,600 2020-02-03
Prtg Network Monitor MEDIUM 6.1
CVE-2019-9206

PRTG Network Monitor v7.1.3.3378 allows XSS via the /public/login.htm errormsg or loginurl parameter. NOTE: This product is discontinued.

No fix yet
Fix from $1,600 2019-12-31
Prtg Network Monitor MEDIUM 6.1
CVE-2019-9207

PRTG Network Monitor v7.1.3.3378 allows XSS via the /search.htm searchtext parameter. NOTE: This product is discontinued.

No fix yet
Fix from $1,600 2019-12-31
Prtg Network Monitor MEDIUM 6.1
CVE-2018-14683

PRTG before 19.1.49.1966 has Cross Site Scripting (XSS) in the WEBGUI.

Fix: 19.1.49.1966+
Fix from $1,600 2019-04-10
Prtg Network Monitor CRITICAL 9.8
CVE-2018-19410 KEVEPSS 87%

PRTG Network Monitor before 18.2.40.1683 allows remote unauthenticated attackers to create users with read-write privileges (including administrator)…

Fix: 18.2.40.1683+
Fix from $2,300 2018-11-21
Prtg Network Monitor HIGH 8.8
CVE-2018-19411

PRTG Network Monitor before 18.2.40.1683 allows an authenticated user with a read-only account to create another user with a read-write account (incl…

Fix: 18.2.40.1683+
Fix from $1,950 2018-11-21
Prtg Network Monitor HIGH 8.8
CVE-2018-19204

PRTG Network Monitor before 18.3.44.2054 allows a remote authenticated attacker (with read-write privileges) to execute arbitrary code and OS command…

Fix: 18.3.44.2054+
Fix from $1,950 2018-11-12
Prtg Network Monitor HIGH 7.5
CVE-2018-19203

PRTG Network Monitor before 18.2.41.1652 allows remote unauthenticated attackers to terminate the PRTG Core Server Service via a special HTTP request.

Fix: 18.2.41.1652+
Fix from $1,950 2018-11-12
Prtg Network Monitor HIGH 7.2
CVE-2018-9276 KEVEPSS 87%

An issue was discovered in PRTG Network Monitor before 18.2.39. An attacker who has access to the PRTG System Administrator web console with administ…

Fix: 18.2.39 / 21.2.68+
Fix from $1,950 2018-07-02
Prtg Network Monitor HIGH 7.5
CVE-2018-10253EPSS 8%

Paessler PRTG Network Monitor before 18.1.39.1648 mishandles stack memory during unspecified API calls.

Fix: 18.1.39.1648+
Fix from $1,950 2018-04-21
Prtg Network Monitor MEDIUM 6.5
CVE-2017-15917

In Paessler PRTG Network Monitor 17.3.33.2830, it's possible to create a Map as a read-only user, by forging a request and sending it to the server.

Mitigation only
Fix from $1,600 2017-10-26
Prtg Network Monitor MEDIUM 6.7
CVE-2017-15651

PRTG Network Monitor 17.3.33.2830 allows remote authenticated administrators to execute arbitrary code by uploading a .exe file and then proceeding i…

Mitigation only
Fix from $1,600 2017-10-20
Prtg Network Monitor MEDIUM 5.4
CVE-2017-15360

PRTG Network Monitor version 17.3.33.2830 is vulnerable to stored Cross-Site Scripting on all group names created, related to incorrect error handlin…

No fix yet
Fix from $1,600 2017-10-15
Prtg Network Monitor MEDIUM 6.1
CVE-2017-15009

PRTG Network Monitor version 17.3.33.2830 is vulnerable to reflected Cross-Site Scripting on error.htm (the error page), via the errormsg parameter.

No fix yet
Fix from $1,600 2017-10-04