CyberRota Analysis
AI-GeneratedWhatsUp Gold versions prior to 2026.0.2 are vulnerable to an unauthenticated remote code execution flaw, allowing attackers with network access to execute arbitrary code under the IIS application service account. This high-severity vulnerability poses significant risks to system integrity and confidentiality. Organizations using affected versions should prioritize immediate updates to mitigate potential exploitation.
CVE
CVE-2026-65941
Severity
HIGH
CVSS
8.8
EPSS
0.44%
Original NVD Description
In WhatsUp Gold versions released before 2026.0.2, an unauthenticated remote attacker with network access to the affected service can execute arbitrary code in the context of the IIS application service account.