CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. Its EPSS score suggests a 40.6% probability of exploitation in the next 30 days. It involves a SQL injection risk.
CVE
CVE-2024-46906
Severity
HIGH
CVSS
8.8
EPSS
40.58%
Original NVD Description
In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated low-privileged user (at least Report Viewer permissions required) to achieve privilege escalation to the admin account.
Related CVEs
Other vulnerabilities affecting the same vendor(s)