CVE-2018-5778: Progress WhatsUp Gold
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
An issue was discovered in Ipswitch WhatsUp Gold before 2017 Plus SP1 (17.1.1). Multiple SQL injection vulnerabilities are present in the legacy .ASP pages, which could allow attackers to execute arbitrary SQL commands via unspecified vectors.
Affected products
- Progress WhatsUp Gold: before 17.1.1 (fixed in 17.1.1)
Published 2018-01-24. Last modified 2026-06-17.