PoC Index

CVE-2023-32781

HIGH 7.2EPSS 14.3%

A command injection vulnerability was identified in PRTG 23.2.84.1566 and earlier versions in the HL7 sensor where an authenticated user with write permissions could abuse the debug option to write new files that could potentially get executed by the EXE/Script sensor. The severity of this vulnerability is high and received a score of 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CVSS v3.1
7.2 HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS
14.26% chance of exploitation in the next 30 days, 96th percentile
Published
2023-08-09
Updated
2024-08-02

Metasploit modules (1)

References

Related