In Progress Ipswitch WhatsUp Gold 17.0.0 up to and including 21.1.1, and 22.0.0, it is possible for an authenticated user to invoke an API transaction that would allow them to read sensitive operating-system attributes from a host that is accessible by the WhatsUp Gold system.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ipswitch whatsup gold |
||
ipswitch whatsup gold 22.0.0 |