CVE-2021-27220: Medium severity paessler prtg traffic grapher vulnerability
Published Mar 31, 2021
·Updated
An issue was discovered in PRTG Network Monitor before 21.1.66.1623. By invoking the screenshot functionality with prepared context paths, an attacker is able to verify the existence of certain files on the filesystem of the PRTG's Web server.
Affected Software
1 affected component
Paessler PRTG Network Monitor<21.1.66.1623
Event History
Mar 31, 2021
CVE Published
via MITRE·09:50 PM
Data Sourced
via MITRE·09:50 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-27220.
2
What is the severity of CVE-2021-27220?
The severity of CVE-2021-27220 is medium (5.3).
3
How can an attacker exploit CVE-2021-27220?
An attacker can exploit CVE-2021-27220 by invoking the screenshot functionality with prepared context paths.
4
What software is affected by CVE-2021-27220?
The software affected by CVE-2021-27220 is Paessler PRTG Network Monitor versions up to 21.1.66.1623.
5
Is there a fix available for CVE-2021-27220?
A fix is available for CVE-2021-27220 in version 21.1.66.1623 of Paessler PRTG Network Monitor.