CVE-2024-46905

Publication date

2024-12-02 14:45:13

Family

ProgressSoftware

State

PUBLISHED

Description

In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated lower-privileged user (at least Network Manager permissions required) to achieve privilege escalation to the admin account.