vendor:
PRTG Network Monitor
by:
Lucas 'luriel' Carmo
7.5
CVSS
HIGH
Stack Overflow
121
CWE
Product Name: PRTG Network Monitor
Affected Version From: 18.1.39.1648
Affected Version To: 18.1.39.1648
Patch Exists: YES
Related CWE: CVE-2018-10253
CPE: a:paessler:prtg_network_monitor:18.1.39.1648
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows, Linux, Mac
2018
PRTG 18.1.39.1648 – Stack Overflow
A stack overflow vulnerability exists in PRTG Network Monitor 18.1.39.1648. An attacker can send a malicious POST request to the vulnerable server with a specially crafted payload to trigger a stack overflow, resulting in remote code execution.
Mitigation:
Upgrade to the latest version of PRTG Network Monitor