Home
CRITICAL: 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:NDefault status
affected
2023.1.0 (semver) before 2024.0.2
affected
Description
In WhatsUp Gold versions released before 2024.0.2, an attacker can gain access to the WhatsUp Gold server via the public API.
Problem types
CWE-290 Authentication Bypass by Spoofing
Product status
2023.1.0 (semver) before 2024.0.2
Credits
Mike Barber, Software Architect at Progress Software
References
www.progress.com/network-monitoring