ZeroHour

CVE-2022-29845

CVSS 3.1
6.5 medium
EPSS
4%p90
Published
()
Modified
Description

In Progress Ipswitch WhatsUp Gold 21.1.0 through 21.1.1, and 22.0.0, it is possible for an authenticated user to invoke an API transaction that would allow them to read the contents of a local file.

Vendors
progress
Products
whatsup gold
Weakness
CWE-829
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.