SEC Consult SA-20260924-0 :: Multiple Vulnerabilities in Paessler PRTG Network Monitor #CVE-2026-4637 #CVE-2026-4638
SEC Consult disclosed two high-impact flaws in Paessler PRTG, fixed in version 26.2.120.1449.
SEC Consult Vulnerability Lab published an advisory on multiple vulnerabilities in Paessler PRTG Network Monitor. Versions earlier than 26.2.120.1449 are affected, and both issues are fixed in 26.2.120.1449. The flaws are tracked as CVE-2026-4637 and CVE-2026-4638 and are rated high impact. The posted notice does not report exploitation in the wild.
- Affects Paessler PRTG Network Monitor before 26.2.120.1449
- Fixed in version 26.2.120.1449
- Tracked as CVE-2026-4637 and CVE-2026-4638
- SEC Consult rates the impact high
Vulnerabilities mentionedAll →
- CVE-2026-46375.1—Reflected XSS in Paessler PRTG Network Monitorpublished · Paessler PRTG Network Monitor
- CVE-2026-46387.1—Unauthenticated RCE in PRTG Network Monitor 26.2.120.1449 before releasepublished · PRTG Network Monitor
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure |
|---|
Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Oct 06 SEC Consult Vulnerability Lab Security Advisory ======================================================================= title: Multiple Vulnerabilities product: Paessler PRTG Network Monitor vulnerable version: <26.2.120.1449 fixed version: 26.2.120.1449 CVE number: CVE-2026-4637, CVE-2026-4638 impact: high homepage:...
This source does not provide full text. Read it at seclists.org.