In WhatsUp Gold versions released before 2026.0.2, an improper authorization vulnerability in the Scheduled Reports API allows any authenticated user to invoke restricted actions.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
In WhatsUp Gold versions released before 2026.0.2, an improper authorization vulnerability in the Scheduled Reports API allows any authenticated user to invoke restricted actions.
How easy to exploit
Severity of consequences
Likelihood of exploitation in next 30 days