A command injection vulnerability was identified in PRTG 23.2.84.1566 and earlier versions in the HL7 sensor where an authenticated user with write permissions could abuse the debug option to write new files that could potentially get executed by the EXE/Script sensor. The severity of this vulnerability is high and received a score of 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-08-09T00:00:00
Updated: 2024-08-02T15:25:37.047Z
Reserved: 2023-05-15T00:00:00
Link: CVE-2023-32781
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-08-09T12:15:10.047
Modified: 2024-11-21T08:04:00.830
Link: CVE-2023-32781
Redhat
No data.