CVE-2017-15009: XSS
Published Oct 3, 2017
·Updated
PRTG Network Monitor version 17.3.33.2830 is vulnerable to reflected Cross-Site Scripting on error.htm (the error page), via the errormsg parameter.
Affected Software
1 affected component
Paessler PRTG Network Monitor=17.3.33.2830
Event History
Oct 3, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15009?
CVE-2017-15009 is classified as a medium severity vulnerability due to the potential for reflected Cross-Site Scripting attacks.
2
How do I fix CVE-2017-15009?
To fix CVE-2017-15009, upgrade PRTG Network Monitor to a version later than 17.3.33.2830 that addresses this vulnerability.
3
What type of vulnerability is CVE-2017-15009?
CVE-2017-15009 is a reflected Cross-Site Scripting vulnerability found in the error page of PRTG Network Monitor.
4
What impact does CVE-2017-15009 have on users?
Users of PRTG Network Monitor can be affected by malicious scripts, potentially leading to unauthorized actions executed in user sessions.
5
Which software versions are affected by CVE-2017-15009?
CVE-2017-15009 specifically affects PRTG Network Monitor version 17.3.33.2830.