CVE-2004-0798

Ipswitch WhatsUp Gold <8.03.1 - RCE

Title source: llm

Description

Buffer overflow in the _maincfgret.cgi script for Ipswitch WhatsUp Gold before 8.03 Hotfix 1 allows remote attackers to execute arbitrary code via a long instancename parameter.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16787
exploitdb WORKING POC VERIFIED
by LoWNOISE · perlremotewindows
https://www.exploit-db.com/exploits/566
metasploit WORKING POC GREAT
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/ipswitch_wug_maincfgret.rb

Scores

EPSS 0.7264
EPSS Percentile 98.8%

Details

Status published
Products (6)
progress/whatsup_gold 7.0
progress/whatsup_gold 7.03
progress/whatsup_gold 7.04
progress/whatsup_gold 8.0
progress/whatsup_gold 8.01
progress/whatsup_gold 8.03
Published Oct 20, 2004
Tracked Since Feb 18, 2026