chiprook
← Security
SecurityOctober 8, 2026, 10:20

73,811 reachable PRTG instances: two flaws fixed in 26.2.120.1449

Paessler fixed CVE-2026-4637 (reflected XSS in error handling) and CVE-2026-4638 (stored domain password leak via script sensor output) in PRTG 26.2.120.1449, released June 3, 2026. A ZoomEye query found 73,811 internet-reachable PRTG assets, but the number running vulnerable builds remains unknown.

73,811 reachable PRTG instances: two flaws fixed in 26.2.120.1449
#PRTG#Paessler
Read next
Security

PRTG flaws CVE-2026-4637 and CVE-2026-4638 patched in 26.2.120.1449

Security

Apache fixes two DoS flaws in NiFi and MyFaces

Security

Google, JPMorgan and two governments fixed the same MCP flaw

Security

XenForo 2.3.13 fixes two authentication flaws