Whatsup Gold
Vendor:
First CVE: Oct 20, 2004 · Active for 21 years
57
Total CVEs
More Total CVEs than 98% of tracked products
5.2
Avg CVEs / Year
Higher CVE frequency than 91% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 63% of tracked products
3.5%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Whatsup Gold over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 20, 2004
21 years ago
Most Recent CVE
Apr 14, 2025
470 days ago
CVE Severity & Scoring
Whatsup Gold57 CVEs
39%
39%
23%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (1.8%)
Network51 (89.5%)
Unknown5 (8.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low52 (91.2%)
High0 (0.0%)
Unknown5 (8.8%)
User Interaction
None44 (77.2%)
Unknown5 (8.8%)
Required8 (14.0%)
Privileges Required
Low20 (35.1%)
High2 (3.5%)
None30 (52.6%)
Unknown5 (8.8%)
Top CVEs
Signals from CVEs in this product scope (57 CVEs).
57 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-6670CRITICAL In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users encrypted password. | Aug 29, 2024 | 9.8 | 98 | YES | YES |
CVE-2024-4885CRITICAL In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold. The
WhatsUp.ExportUtilities.Export.GetFileWith | Jun 25, 2024 | 9.8 | 98 | YES | YES |
CVE-2004-0798HIGH Buffer overflow in the _maincfgret.cgi script for Ipswitch WhatsUp Gold before 8.03 Hotfix 1 allows remote attackers to execute arbitrary code via a long instancename parameter. | Oct 20, 2004 | 7.5 | 72 | NO | YES |
CVE-2024-4883CRITICAL In WhatsUp Gold versions released before 2023.1.3, a Remote Code Execution issue exists in Progress WhatsUp Gold. This vulnerability allows an unauthenticated attacker to achieve t | Jun 25, 2024 | 9.8 | 67 | NO | NO |
CVE-2022-29847HIGH In Progress Ipswitch WhatsUp Gold 21.0.0 through 21.1.1, and 22.0.0, it is possible for an unauthenticated attacker to invoke an API transaction that would allow them to relay encr | May 11, 2022 | 7.5 | 67 | NO | YES |
CVE-2024-5010HIGH In WhatsUp Gold versions released before 2023.1.3, a vulnerability exists in the TestController functionality. A specially crafted
unauthenticated
HTTP request can lead to a di | Jun 25, 2024 | 7.5 | 57 | NO | NO |
CVE-2024-46909CRITICAL In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leverage this vulnerability to execute code in the context of the service account. | Dec 2, 2024 | 9.8 | 56 | NO | NO |
CVE-2024-6671CRITICAL In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an unauthenticated attacker to ret | Aug 29, 2024 | 9.8 | 52 | NO | YES |
CVE-2024-46906HIGH In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated low-privileged user (at least Report Viewer permissions required) to achie | Dec 2, 2024 | 8.8 | 46 | NO | NO |
CVE-2024-5011HIGH In WhatsUp Gold versions released before 2023.1.3, an uncontrolled resource consumption vulnerability exists. A specially crafted unauthenticated HTTP request to the TestController | Jun 25, 2024 | 7.5 | 44 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (57 CVEs).
CISA KEV
2 CVEs
3.5% of CVEs· 98th percentile
Metasploit
6 CVEs
10.5% of CVEs· 97th percentile
Nuclei
3 CVEs
5.3% of CVEs· 97th percentile
ExploitDB
5 CVEs
8.8% of CVEs· 86th percentile
Social Chatter
Signals from CVEs in this product scope (57 CVEs).
Media Mentions
Signals from CVEs in this product scope (57 CVEs).
Top CNAs Publishing CVEs For Whatsup Gold
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 8.03 | 2 | 6.3 | 34.4% | 0 | 1 |
| 8.01 | 2 | 6.3 | 34.4% | 0 | 1 |
| 8.0 | 2 | 6.3 | 34.4% | 0 | 1 |
| 7.04 | 2 | 6.3 | 34.4% | 0 | 1 |
| 7.03 | 2 | 6.3 | 34.4% | 0 | 1 |
| 7.0 | 2 | 6.3 | 34.4% | 0 | 1 |
| 23.1.0 | 1 | 7.2 | 22.4% | 0 | 0 |
| 22.0.0 | 4 | 6.5 | 17.1% | 0 | 4 |
| 21.1.1 | 1 | 6.5 | 3.9% | 0 | 1 |
| 21.1.0 | 1 | 6.5 | 3.9% | 0 | 1 |
| 16.3 | 1 | 9.8 | 3.5% | 0 | 1 |
| 15.02 | 2 | 5.9 | 3.4% | 0 | 2 |
| 11 | 1 | 7.8 | 3.5% | 0 | 0 |