CVE-2025-67834: XSS
Published Jan 14, 2026
·Updated
Paessler PRTG Network Monitor before 25.4.114 allows XSS by an unauthenticated attacker via the filter parameter.
Affected Software
2 affected components
Paessler PRTG Network Monitor<25.4.114
Paessler PRTG Network Monitor<25.4.114.1032
Event History
Jan 14, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-67834?
CVE-2025-67834 is classified as a high severity vulnerability due to the potential for XSS attacks by unauthenticated attackers.
2
How do I fix CVE-2025-67834?
To fix CVE-2025-67834, upgrade your Paessler PRTG Network Monitor to version 25.4.114 or later.
3
What types of attacks can CVE-2025-67834 facilitate?
CVE-2025-67834 can facilitate cross-site scripting (XSS) attacks which can compromise user sessions and inject malicious scripts.
4
Who is affected by CVE-2025-67834?
Any user running Paessler PRTG Network Monitor versions prior to 25.4.114 is affected by CVE-2025-67834.
5
Is authentication required for exploiting CVE-2025-67834?
No, CVE-2025-67834 can be exploited by unauthenticated attackers, making it particularly dangerous.