Beveiligingsadvies

CVE-2024-4885

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-25 19:48:15
Laatst bijgewerkt 2025-10-21 22:56:21
Toegewezen door ProgressSoftware
CVSS-score 9.8
Status PUBLISHED

Beschrijving

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The WhatsUp.ExportUtilities.Export.GetFileWithoutZip allows execution of commands with iisapppool\nmconsole privileges.