Code Injection Vulnerability in Ipswitch WhatsUp Gold

Code Injection Vulnerability in Ipswitch WhatsUp Gold

CVE-2018-8938 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

A Code Injection issue was discovered in DlgSelectMibFile.asp in Ipswitch WhatsUp Gold before 2018 (18.0). Malicious actors can inject a specially crafted SNMP MIB file that could allow them to execute arbitrary commands and code on the WhatsUp Gold server.

Learn more about our Cis Benchmark Audit For Server Software.