Beveiligingsadvies

CVE-2024-4884

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-25 19:46:22
Laatst bijgewerkt 2024-08-01 20:55:10
Toegewezen door ProgressSoftware
CVSS-score 9.8
Status PUBLISHED

Beschrijving

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The Apm.UI.Areas.APM.Controllers.CommunityController allows execution of commands with iisapppool\nmconsole privileges.