CVE-2019-19119

Severity CVSS v4.0:
Pending analysis
Type:
CWE-522 Insufficiently Protected Credentials
Publication date:
03/02/2020
Last modified:
21/07/2021

Description

An issue was discovered in PRTG 7.x through 19.4.53. Due to insufficient access control on local registry keys for the Core Server Service, a non-administrative user on the local machine is able to access administrative credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:paessler:prtg_network_monitor:*:*:*:*:*:*:*:* 7.0 (including) 19.4.53. (including)