Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2026-4637 Details

ANALYZED


This CVE record has been analyzed and enriched by NVDAPI.com as an independent party.

Description

Paessler PRTG Network Monitor before version 26.2.120.1449 is affected by a reflected Cross-Site Scripting (XSS) vulnerability. When a request is made for a non-existent resource ending in \".htm\", the web interface returns an HTTP 403 \"Forbidden Path\" error page that echoes the requested URL path into the HTML response body without proper output encoding or sanitization. An unauthenticated, remote attacker can craft a URL containing an HTML/JavaScript payload in the path (e.g. https:////welcome.htm) and, once a victim with an active PRTG session opens the crafted link, execute arbitrary JavaScript in the security context of the PRTG web interface. Because the PRTG session cookie is not protected with the HttpOnly attribute, successful exploitation allows the attacker to read and exfiltrate the victim's session cookie, potentially leading to session hijacking.

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
https://sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-in-paessler-prtg-network-monitor/ CISA-ADPBundleExploitRemedyTechnical Analysis
https://paessler.freshdesk.com/en/support/solutions/articles/76000088640 SEC Consult Vulnerability LabAdvisoryBundleRemedyVendor
https://r.sec-consult.com/paessler SEC Consult Vulnerability LabBundleExploitRemedyTechnical Analysis
https://www.paessler.com/de/download/ SEC Consult Vulnerability LabProductVendor
https://www.paessler.com/prtg/prtg-network-monitor SEC Consult Vulnerability LabProductVendor

Weakness Enumeration

CWE-IDCWE NameSource
CWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')SEC Consult Vulnerability Lab

Affected Products

ProductVersions
Paessler PRTG Network Monitor
< 26.2.120.1449

CPE

  • cpe:2.3:a:paessler:prtg_network_monitor:*:*:*:*:*:*:*:*
  • cpe:2.3:a:paessler_ag:prtg_network_monitor:*:*:*:*:*:*:*:*
  • cpe:2.3:a:paessler:prtg:*:*:*:*:*:*:*:*

Remediation

Paessler PRTG Enterprise Monitor
All versions

CPE

  • No CPEs found in CPE dictionary for this product.

Remediation

  • No remediation found in references.
Paessler PRTG Hosted Monitor
All versions

CPE

  • No CPEs found in CPE dictionary for this product.

Remediation

  • No remediation found in references.
Paessler PRTG UVexplorer
All versions

CPE

  • No CPEs found in CPE dictionary for this product.

Remediation

  • No remediation found in references.

Change History

2 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2026-4637
NVD Published Date:
Sep 24, 2026
NVD Last Modified:
Sep 24, 2026
Source:
SEC Consult Vulnerability Lab