CVE-2024-12106

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
31/12/2024
Last modified:
06/01/2025

Description

In WhatsUp Gold versions released before 2024.0.2, an unauthenticated attacker can configure LDAP settings.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:progress:whatsup_gold:*:*:*:*:*:*:*:* 23.1.0 (including) 24.0.2 (excluding)


References to Advisories, Solutions, and Tools