WhatsUp Gold Security Update Advisory (CVE-2024-8785)

Overview

 

An update has been released to address vulnerabilities in WhatsUp Gold. Users of the affected versions are advised to update to the latest version.
 

 

Affected Products

 

CVE-2024-8785

  • WhatsUP Gold versions: ~ 2024.0.1 (excluded)

 

 

Resolved Vulnerabilities

A remote, unauthenticated attacker could create or change registry values in the registry path HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Ipswitch\ via NmAPI.exe (CVE-2024-8785)

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

CVE-2024-8785

  • WhatsUP Gold version: 2024.0.1 or later version

 

 

Referenced Sites

 

[1] CVE-2024-8785 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-8785

[2] WhatsUp Gold Security Bulletin- September 2024

https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-September-2024