Security Advisory

CVE-2024-46905

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-12-02 14:45:13
Last updated 2024-12-02 15:30:19
Assigner ProgressSoftware
CVSS score 8.8
State PUBLISHED

Description

In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated lower-privileged user (at least Network Manager permissions required) to achieve privilege escalation to the admin account.