In WhatsUp Gold versions released before 2023.1.3,
an authenticated user with certain permissions can upload an arbitrary file and obtain RCE usingĀ Apm.UI.Areas.APM.Controllers.Api.Applications.AppProfileImportController.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ProgressSoftware
Published: 2024-06-25T19:57:16.744Z
Updated: 2024-06-27T13:18:19.206Z
Reserved: 2024-05-16T15:59:50.556Z
Link: CVE-2024-5008
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-06-25T20:15:13.173
Modified: 2024-06-26T12:44:29.693
Link: CVE-2024-5008
JSON object: View
Redhat Information
No data.
CWE