CVE-2024-5014

In WhatsUp Gold versions released before 2023.1.3, a Server Side Request Forgery vulnerability exists in the GetASPReport feature. This allows any authenticated user to retrieve ASP reports from an HTML form.
Configurations

No configuration.

History

No history.

Information

Published : 2024-06-25 21:16

Updated : 2024-06-26 12:44


NVD link : CVE-2024-5014

Mitre link : CVE-2024-5014

CVE.ORG link : CVE-2024-5014


JSON object : View

Products Affected

No product.

CWE
CWE-918

Server-Side Request Forgery (SSRF)