Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jfg-r68g-p4gm

Опубликовано: 25 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The Apm.UI.Areas.APM.Controllers.CommunityController

allows execution of commands with iisapppool\nmconsole privileges.

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The Apm.UI.Areas.APM.Controllers.CommunityController

allows execution of commands with iisapppool\nmconsole privileges.

EPSS

Процентиль: 98%
0.58443
Средний

9.8 Critical

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The Apm.UI.Areas.APM.Controllers.CommunityController allows execution of commands with iisapppool\nmconsole privileges.

EPSS

Процентиль: 98%
0.58443
Средний

9.8 Critical

CVSS3

Дефекты

CWE-77