CVE-2024-4562

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
14/05/2024
Last modified:
09/12/2024

Description

<br /> In WhatsUp Gold versions released before 2023.1.2 , <br /> <br /> an SSRF vulnerability exists in Whatsup Gold&amp;#39;s <br /> <br /> Issue exists in the HTTP Monitoring functionality.  <br /> <br /> Due to the lack of proper authorization, any authenticated user can access the HTTP monitoring functionality, what leads to the Server Side Request Forgery.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:progress:whatsup_gold:*:*:*:*:*:*:*:* 23.1.2 (excluding)