{ "schema_version": "1.4.0", "id": "GHSA-mjjm-q6c3-5cp4", "modified": "2022-05-24T17:12:58Z", "published": "2022-05-24T17:12:58Z", "aliases": [ "CVE-2020-10374" ], "details": "A webserver component in Paessler PRTG Network Monitor 19.2.50 to PRTG 20.1.56 allows unauthenticated remote command execution via a crafted POST request or the what parameter of the screenshot function in the Contact Support form.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-10374" }, { "type": "WEB", "url": "https://kb.paessler.com/en/topic/87668-how-can-i-mitigate-cve-2020-10374-until-i-can-update" }, { "type": "WEB", "url": "https://tehtris.com/en/rce-on-prtg-network-monitor-tehtris-pentest" }, { "type": "WEB", "url": "https://www.paessler.com/prtg/history/stable#20.1.57.1745" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2020-03-30T22:15:00Z" } }