First published: Thu Aug 29 2024(Updated: )
This vulnerability allows remote attackers to escalate privileges on affected installations of Progress Software WhatsUp Gold. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-6672.
Affected Software | Affected Version | How to fix |
---|---|---|
WhatsUp Gold |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-24-1187 is determined by the CVSS rating assigned, which indicates a significant risk of privilege escalation.
To fix ZDI-24-1187, update Progress Software WhatsUp Gold to the latest patched version provided by the vendor.
ZDI-24-1187 enables remote attackers to escalate privileges on affected installations of Progress Software WhatsUp Gold.
Yes, authentication is required, but the existing authentication mechanism can be bypassed.
ZDI-24-1187 affects Progress Software WhatsUp Gold installations.