Code Injection Vulnerability in Ipswitch WhatsUp Gold
CVE-2018-8938 · HIGH Severity
AV:N/AC:L/AU:N/C:P/I:P/A:P
A Code Injection issue was discovered in DlgSelectMibFile.asp in Ipswitch WhatsUp Gold before 2018 (18.0). Malicious actors can inject a specially crafted SNMP MIB file that could allow them to execute arbitrary commands and code on the WhatsUp Gold server.
Learn more about our Cis Benchmark Audit For Server Software.