Progress WhatsUp Gold是Progress公司的一款网络监控软件。 Progress WhatsUp Gold 2026.0.2之前版本存在安全漏洞,该漏洞源于特权攻击者可以在IIS web根目录中创建LogToFile操作并指定任意文件扩展名。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Progress Software Corporation | WhatsUp Gold | < 26.0.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Progress Software Corporation | WhatsUp Gold | 0 ~ 26.0.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-65941 | 8.8 HIGH | WhatsUp Gold versions prior to 26.0.2 contain an unauthenticated remote code execution vul |
| CVE-2026-65937 | 8.0 HIGH | WhatsUp Gold versions prior to 26.0.2 contain multiple stored cross-site scripting (XSS) v |
| CVE-2026-65940 | 6.8 MEDIUM | WhatsUp Gold versions prior to 26.0.2 excessive file system permissions allows a privilege |
| CVE-2026-65938 | 4.3 MEDIUM | WhatsUp Gold versions prior to 26.0.2 contain an improper authorization vulnerability in t |
No comments yet