logo

Critical Vulnerabilities in Progress WhatsUp Gold (CVE-2024-12108, CVE-2024-12106); PoC Available for Oracle WebLogic Flaw

ID: 6044b02e-fb33-5478-a59c-224acd09d991

STIX ID: report--6044b02e-fb33-5478-a59c-224acd09d991

Feed Name: SOCRadar Blog

Threat Score
80/100

Date Published: 2025-01-02

Date Updated: 2026-04-30

Author: Ameer Owda

...
...

Critical vulnerabilities in Progress WhatsUp Gold (including CVE-2024-12108 and CVE-2024-12106) allow remote server control, LDAP tampering, and data disclosure in versions prior to 24.0.2; roughly 110,000 instances appear exposed. Separately, a public PoC for Oracle WebLogic CVE-2024-21182 elevates exploitation risk for affected WebLogic versions; patches and mitigations are available and should be applied immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.