VYPR
Unrated severityNVD Advisory· Published Jun 25, 2024· Updated Aug 1, 2024

WhatsUp Gold SetAdminPassword Improper Access Control Privilege Escalation Vulnerability

CVE-2024-5009

Description

In WhatsUp Gold versions released before 2023.1.3, an Improper Access Control vulnerability in Wug.UI.Controllers.InstallController.SetAdminPassword allows local attackers to modify admin's password.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.