In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold. The Apm.UI.Areas.APM.Controllers.CommunityController
allows execution of commands with iisapppool\nmconsole privileges.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ProgressSoftware
Published: 2024-06-25T19:46:22.692Z
Updated: 2024-06-27T03:55:24.937Z
Reserved: 2024-05-14T18:28:10.616Z
Link: CVE-2024-4884
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-06-25T20:15:12.547
Modified: 2024-06-26T12:44:29.693
Link: CVE-2024-4884
JSON object: View
Redhat Information
No data.