UPDATE: Paessler PRTG: Vulnerability Allows Information Disclosure
A BSI Warn- und Informationsdienst (WID): Schwachstellen-Informationen (Security Advisories) ·
Admiralty grading (A–F · 1–6)
Source reliability
- A Completely reliable
- B Usually reliable
- C Fairly reliable
- D Not usually reliable
- E Unreliable
- F Cannot be judged
Information credibility
- 1 Confirmed
- 2 Probably true
- 3 Possibly true
- 4 Doubtful
- 5 Improbable
- 6 Cannot be judged
NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.
Key insight
The vulnerability in Paessler PRTG allows information disclosure, which can compromise the confidentiality of monitoring data.
Description
Paessler PRTG contains a vulnerability that allows a remote, anonymous attacker to disclose information. Several versions of the network monitoring software are apparently affected. No exploit is publicly known, and there is no information about active exploitation. The BSI has published an update to its warning. The report does not provide details on affected versions or a CVE entry.
Risk score
- cvss base
- 0.00
- kev bonus
- 0.00
- epss bonus
- 0.00
- poc bonus
- 0.00
- raw before weight
- 0.00
- industry weight
- 1.10
- freshness factor
- 1.00
- exploitability factor
- 1.00
- days old
- 0.00
- vendor mismatch penalty
- 0.00
Path: operational