Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical Flaw

Malevolent entities are probably utilizing publicly accessible proof-of-concept (PoC) exploits for newly discovered security vulnerabilities in Progress Software WhatsUp Gold to carry out opportunistic assaults.

The action is reported to have started on August 30, 2024, just five hours after security researcher Sina Kheirkhah of the Summoning Team published a proof of concept for CVE-2024-6670 (CVSS score: 9.8). Sina Kheirkhah is also credited with finding and reporting CVE-2024-6671 (CVSS scores: 9.8).

Progress addressed both of the major vulnerabilities in mid-August 2024, which let an unauthorized attacker obtain an encrypted password belonging to a user read more about Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical Flaw.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions

Leave a Reply

Your email address will not be published. Required fields are marked *