An issue was discovered in PRTG Network Monitor before 21.1.66.1623. By invoking the screenshot functionality with prepared context paths, an attacker is able to verify the existence of certain files on the filesystem of the PRTG's Web server.
References
Link | Resource |
---|---|
https://www.paessler.com/prtg/history/stable#21.1.66.1623 | Release Notes Vendor Advisory |
Configurations
Information
Published : 2021-03-31 15:15
Updated : 2021-04-06 08:48
NVD link : CVE-2021-27220
Mitre link : CVE-2021-27220
JSON object : View
CWE
Products Affected
paessler
- prtg_network_monitor