CVE-2017-12879: XSS
Published Aug 24, 2017
·Updated
Cross-site scripting (XSS-STORED) vulnerability in the DEVICES OR SENSORS functionality in Paessler PRTG Network Monitor before 17.3.33.2654 allows authenticated remote attackers to inject arbitrary web script or HTML.
Affected Software
1 affected component
Paessler PRTG Network Monitor<=17.3.33
Event History
Aug 24, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-12879?
CVE-2017-12879 has a high severity rating due to its potential for exploitation through stored cross-site scripting.
2
How do I fix CVE-2017-12879?
To resolve CVE-2017-12879, upgrade to Paessler PRTG Network Monitor version 17.3.33.2654 or later.
3
Who is affected by CVE-2017-12879?
CVE-2017-12879 affects users of Paessler PRTG Network Monitor versions prior to 17.3.33.2654.
4
What type of vulnerability is CVE-2017-12879?
CVE-2017-12879 is classified as a stored cross-site scripting (XSS) vulnerability.
5
Can authenticated users exploit CVE-2017-12879?
Yes, authenticated remote attackers can exploit CVE-2017-12879 to inject arbitrary web scripts or HTML.