Vulnerabilities (CVE)

Filtered by vendor Progress Subscribe
Total 202 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-6671 1 Progress 1 Whatsup Gold 2024-09-04 N/A 9.8 CRITICAL
In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users encrypted password.
CVE-2024-6672 1 Progress 1 Whatsup Gold 2024-09-04 N/A 8.8 HIGH
In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an authenticated low-privileged attacker to achieve privilege escalation by modifying a privileged user's password.