CVE-2023-22631 Details
Description
PRTG Network Monitor before 23.1.82 allows remote attackers to write to files via the HTTP XML/REST Sensor.
An arbitrary file write vulnerability has been identified in PRTG Network Monitor versions prior to 23.1.82. This issue allows remote attackers to write files on the system where the PRTG probe is running, by exploiting certain HTTP XML/REST sensors. The vulnerability was reported by an authorized tester during a security assessment.
Users are advised to update to PRTG Network Monitor version 23.1.82 or later, and to utilize the Auto-Update feature to ensure the latest security patches are applied.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 14, 2026CISA-ADP
Assessed Sep 14, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://helpdesk.paessler.com/en/support/solutions/articles/76000076688-is-prtg-affected-by-cve-2023-22631-or-cve-2023-22632- | [email protected] | AdvisoryRemedyVendor |
| https://www.paessler.com/prtg | [email protected] | ProductVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-88 | Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Paessler PRTG Network Monitor | < 23.1.82 (semver) |
CPE
Remediation
| |
| Paessler PRTG Enterprise Monitor | < 23.1.82 (semver) |
CPE
Remediation
| |
| Paessler PRTG Hosted Monitor | < 23.1.82 (semver) |
CPE
Remediation
| |
| Paessler PRTG UVexplorer | < 23.1.82 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 14, 2026 | CVE Modified | CISA-ADP |
| Sep 14, 2026 | New CVE Received | [email protected] |
Volerion