Security Advisory

CVE-2024-4885

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-25 19:48:15
Last updated 2025-10-21 22:56:21
Assigner ProgressSoftware
State PUBLISHED

Description

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The WhatsUp.ExportUtilities.Export.GetFileWithoutZip allows execution of commands with iisapppoolnmconsole privileges.