vendor:
WhatsUp Gold
by:
Matt Buzanowski
9,8
CVSS
CRITICAL
Remote Code Execution
89
CWE
Product Name: WhatsUp Gold
Affected Version From: 16.3.x
Affected Version To: 16.3.x
Patch Exists: YES
Related CWE: CVE-2015-8261
CPE: a:ipswitch:whatsup_gold
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 x86
2016
WhatsUp Gold v16.3 Unauthenticated Remote Code Execution
This exploit uses a SQL injection vulnerability in WhatsUp Gold v16.3 to execute arbitrary code on the target system. The exploit sends a specially crafted SOAP request to the iDroneComAPI.asmx web service, which contains a malicious SQL query. This query creates a new ASP page on the target system, which contains a script that can be used to execute arbitrary code. The exploit then sends a request to the newly created page, which executes the code.
Mitigation:
Users should upgrade to the latest version of WhatsUp Gold, which contains a patch for this vulnerability.