Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2017-12879

Description

Cross-site scripting (XSS-STORED) vulnerability in the DEVICES OR SENSORS functionality in Paessler PRTG Network Monitor before 17.3.33.2654 allows authenticated remote attackers to inject arbitrary web script or HTML.

POC

Reference

- https://drive.google.com/open?id=0B6WbMqXSfqQFODZHUGtLdzU3eDA

- https://youtu.be/QOLdH2oey8Q

Github

No PoCs found on GitHub currently.