First published: Mon Feb 03 2020(Updated: )
An issue was discovered in PRTG 7.x through 19.4.53. Due to insufficient access control on local registry keys for the Core Server Service, a non-administrative user on the local machine is able to access administrative credentials.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Paessler PRTG Traffic Grapher | >=7.0<=19.4.53. |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19119 is an issue discovered in PRTG 7.x through 19.4.53 that allows a non-administrative user on the local machine to access administrative credentials due to insufficient access control on local registry keys for the Core Server Service.
The Paessler PRTG Network Monitor versions 7.x through 19.4.53 are affected by CVE-2019-19119.
CVE-2019-19119 has a severity of medium with a CVSS score of 5.5.
To fix CVE-2019-19119, it is recommended to update PRTG Network Monitor to version 19.4.54 or later.
More information about CVE-2019-19119 can be found on the Paessler blog and the official Paessler PRTG Network Monitor release notes page.