Progress

Whatsupgold

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.24%
  • Veröffentlicht 12.08.2026 15:23:07
  • Zuletzt bearbeitet 13.08.2026 05:17:25

In WhatsUp Gold versions released before 2026.0.2, a privileged attacker can create a LogToFile action specifying an arbitrary file extension within the IIS web root.

Exploit
  • EPSS 5.88%
  • Veröffentlicht 28.09.2021 18:15:09
  • Zuletzt bearbeitet 21.11.2024 06:26:02

In Progress WhatsUp Gold prior to version 21.1.0, an application endpoint failed to adequately sanitize malicious input. which could allow an unauthenticated attacker to execute arbitrary code in a victim's browser.