Description
In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Credentials. This vulnerability allows unauthenticated attackers to disclose Windows Credentials stored in the product Credential Library.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46284 | In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Credentials. This vulnerability allows unauthenticated attackers to disclose Windows Credentials stored in the product Credential Library. |
References
History
Wed, 21 Aug 2024 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:progress:whatsup_gold:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2024-08-01T20:55:10.401Z
Reserved: 2024-05-16T15:59:52.762Z
Link: CVE-2024-5012
Updated: 2024-06-26T23:33:16.725Z
Status : Modified
Published: 2024-06-25T21:16:00.320
Modified: 2024-11-21T09:46:46.790
Link: CVE-2024-5012
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD