Vulnerabilities > Paessler

DATE CVE VULNERABILITY TITLE RISK
2017-10-04 CVE-2017-15008 Cross-site Scripting vulnerability in Paessler Prtg Network Monitor 17.3.33.2830
PRTG Network Monitor version 17.3.33.2830 is vulnerable to stored Cross-Site Scripting on all sensor titles, related to incorrect error handling for a %00 in the SRC attribute of an IMG element.
network
low complexity
paessler CWE-79
4.8
2017-08-24 CVE-2017-12879 Cross-site Scripting vulnerability in Paessler Prtg Network Monitor
Cross-site scripting (XSS-STORED) vulnerability in the DEVICES OR SENSORS functionality in Paessler PRTG Network Monitor before 17.3.33.2654 allows authenticated remote attackers to inject arbitrary web script or HTML.
network
low complexity
paessler CWE-79
5.4
2017-08-18 CVE-2017-9816 Cross-site Scripting vulnerability in Paessler Prtg Network Monitor
Cross-site scripting (XSS) vulnerability in Paessler PRTG Network Monitor before 17.2.32.2279 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
paessler CWE-79
6.1
2017-04-10 CVE-2016-5078 Cross-site Scripting vulnerability in Paessler Prtg Network Monitor
Paessler PRTG before 16.2.24.4045 has XSS via SNMP.
network
low complexity
paessler CWE-79
6.1
2017-01-23 CVE-2015-7743 XXE vulnerability in Paessler Prtg Network Monitor
XML external entity vulnerability in PRTG Network Monitor before 16.2.23.3077/3078 allows remote authenticated users to read arbitrary files by creating a new HTTP XML/REST Value sensor that accesses a crafted XML file.
network
low complexity
paessler CWE-611
6.5