[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252271

 
 

909

 
 

196835

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Improper input validation vulnerability in PTRG Network Monitor - CVE-2018-19204

ID: oval:org.secpod.oval:def:63901Date: (C)2020-06-22   (M)2022-10-10
Class: VULNERABILITYFamily: windows




The host is installed with PTRG Network Monitor before 18.3.44.2054 and is prone to an improper input validation vulnerability. A flaw is present in the application, which fails to properly handle a crafted HTTP request that overrides the 'writeresult' command-line parameter for HttpAdvancedSensor.exe. Successful exploitation allows a remote authenticated attacker (with read-write privileges) to execute arbitrary code and OS commands with system privileges.

Platform:
Microsoft Windows Server 2008
Microsoft Windows 7
Microsoft Windows Server 2012
Microsoft Windows Server 2008 R2
Microsoft Windows 8.1
Microsoft Windows Server 2012 R2
Microsoft Windows 10
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Product:
PTRG Network Monitor
Reference:
CVE-2018-19204
CVE    1
CVE-2018-19204

© SecPod Technologies