Paessler PRTG Network Monitor SNMP Cross-Site Scripting Authentication Bypass Vulnerability

Vulnerability

An authentication bypass vulnerability has been identified in Paessler PRTG Network Monitor, specifically within the SNMP module. This issue arises from improper validation of user-supplied data in the web interface, allowing network-adjacent attackers to inject arbitrary scripts. Exploitation of this vulnerability requires some user interaction from an administrator.

Impact

Exploitation of this vulnerability allows for authentication bypass on the affected system.

Remediation

The vulnerability has been addressed in PRTG version 25.1.102.1373. Users are advised to update to this version.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
5.4
exploitability
4.6
remediation
7.9
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.