CVE-2024-7763

In WhatsUp Gold versions released before 2024.0.0,

an Authentication Bypass issue exists which allows an attacker to obtain encrypted user credentials.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
ProgressSoftwareCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
VendorProductVersion
progresswhatsup_gold
2024.0.0 <
𝑥
< 2024.0.0
progresswhatsup_gold
𝑥
< 24.0
𝑥
= Vulnerable software versions