Beveiligingsadvies

CVE-2024-5008

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-25 19:57:16
Laatst bijgewerkt 2024-08-01 20:55:10
Toegewezen door ProgressSoftware
CVSS-score 8.8
Status PUBLISHED

Beschrijving

In WhatsUp Gold versions released before 2023.1.3, an authenticated user with certain permissions can upload an arbitrary file and obtain RCE using Apm.UI.Areas.APM.Controllers.Api.Applications.AppProfileImportController.