PRTG Network Monitor contains an OS command injection vulnerability in the web administrative console that allows authenticated attackers with admin privileges to execute arbitrary commands on the server. This is a high-risk vulnerability for internet-facing deployments, confirmed by CISA KEV listing indicating active exploitation.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2018-07-02
Added to CISA KEV: 2025-02-04 2409 DAYS BETWEEN CVE AND KEV
CVE-2018-9276 is an OS command injection vulnerability affecting Paessler PRTG Network Monitor versions prior to 18.2.39 [1].
An attacker who has access to the PRTG System Administrator web console with administrative privileges can exploit an OS command injection vulnerability. ... Description An issue was discovered in PRTG Network Monitor before 18.2.39. An attacker who has access to the PRTG System Administrator web co…
Usage. git clone https://github.com/A1vinSmith/CVE-2018-9276.git ./exploit. ... CVE-2018-9276 Authenticated Command Injection CVE-2018-9276 PRTG < 18.2.39 Reverse Shell (Python3 support) ... CVE-2018-9276 PRTG < 18.2.39 Reverse Shell (Python3 support). Dependancies. Impacket (python3 version)../expl…
Assumptions. This is a point and shoot exploit, all you need to know are the admin credentials for the PRTG instance (default prtgadmin:prtgadmin). Depending on the configuration of the target machiene, your milage may vary.Educational purposes only etc etc. About. CVE-2018-9276 PRTG < 18.2.39 Authe…