CVE-2024-4885

Progress WhatsUp Gold Path Traversal Vulnerability

Progress WhatsUp Gold contains a path traversal vulnerability that allows an unauthenticated attacker to achieve remote code execution. Vendor/Product: Progress WhatsUp Gold. Added to CISA KEV 2025-03-03; required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Category: Vulnerability, Known Exploited