Security Advisory

CVE-2024-4561

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-14 20:35:17
Last updated 2024-08-01 20:47:41
Assigner ProgressSoftware
State PUBLISHED

Description

In WhatsUp Gold versions released before 2023.1.2 , a blind SSRF vulnerability exists in Whatsup Golds FaviconController that allows an attacker to send arbitrary HTTP requests on behalf of the vulnerable server.