First published: Wed Oct 12 2022(Updated: )
In Progress WhatsUp Gold before 22.1.0, an SNMP MIB Walker application endpoint failed to adequately sanitize malicious input. This could allow an unauthenticated attacker to execute arbitrary code in a victim's browser.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Progress WhatsUp Gold | <22.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-42711 is a vulnerability in the SNMP MIB Walker application endpoint in WhatsUp Gold before version 22.1.0.
CVE-2022-42711 can allow an unauthenticated attacker to execute arbitrary code in a victim's browser.
The severity of CVE-2022-42711 is critical with a CVSS score of 9.6.
WhatsUp Gold versions before 22.1.0 are affected by CVE-2022-42711.
To fix CVE-2022-42711, update your WhatsUp Gold software to version 22.1.0 or later.