First published: Tue Dec 31 2024(Updated: )
In WhatsUp Gold versions released before 2024.0.2, an authenticated user can use a specially crafted HTTP request that can lead to information disclosure.
Credit: security@progress.com
Affected Software | Affected Version | How to fix |
---|---|---|
Progress Software WhatsUp Gold | >=23.1.0<24.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12105 has been rated as a medium severity vulnerability due to the potential for information disclosure.
To fix CVE-2024-12105, upgrade WhatsUp Gold to version 2024.0.2 or later.
CVE-2024-12105 affects authenticated users of WhatsUp Gold versions prior to 2024.0.2.
CVE-2024-12105 is an information disclosure vulnerability due to specially crafted HTTP requests.
WhatsUp Gold versions from 23.1.0 up to, but not including, 2024.0.2 are vulnerable to CVE-2024-12105.