Authentication Bypass Flaw in Paessler PRTG Network Monitor
CVE-2024-12833

6.1MEDIUM

Key Information:

Vendor

Paessler

Vendor
CVE Published:
11 February 2025

What is CVE-2024-12833?

A security vulnerability in the web interface of Paessler PRTG Network Monitor allows network-adjacent attackers to bypass authentication. This issue stems from insufficient validation of user-supplied input, enabling the injection of malicious scripts. If exploited, unauthorized access could be gained to the system, although it requires some degree of interaction from an administrator.

Affected Version(s)

PRTG Network Monitor 24.1.92.1554 x64

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.