XSS exists in PRTG Network Monitor 20.1.56.1574 via crafted map properties. An attacker with Read/Write privileges can create a map, and then use the Map Designer Properties screen to insert JavaScript code. This can be exploited against any user with View Maps or Edit Maps access.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-06-23T19:09:54

Updated: 2020-12-02T19:06:13

Reserved: 2020-06-15T00:00:00


Link: CVE-2020-14073

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-06-23T20:15:12.473

Modified: 2023-01-27T20:30:14.927


Link: CVE-2020-14073

JSON object: View

cve-icon Redhat Information

No data.

CWE