CVE-2022-29847
30Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 57%
from disclosure to weapon195 days
Published on NVDMay 11
metasploit+195d
exploitation probability
57%top 1% of all CVEs
observed exploitation
nono source reports it
In Progress Ipswitch WhatsUp Gold 21.0.0 through 21.1.1, and 22.0.0, it is possible for an unauthenticated attacker to invoke an API transaction that would allow them to relay encrypted WhatsUp Gold user credentials to an arbitrary host.
Affected products
n/a · n/a