CVE-2024-5009

Publication date

2024-06-25 19:58:48

Family

ProgressSoftware

State

PUBLISHED

Description

In WhatsUp Gold versions released before 2023.1.3, an Improper Access Control vulnerability in Wug.UI.Controllers.InstallController.SetAdminPassword allows local attackers to modify admins password.