Security Advisory

CVE-2024-4884

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-25 19:46:22
Last updated 2024-08-01 20:55:10
Assigner ProgressSoftware
State PUBLISHED

Description

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The Apm.UI.Areas.APM.Controllers.CommunityController allows execution of commands with iisapppoolnmconsole privileges.