CVE-2024-6670CISA KEVEPSS p99.8%

CVE-2024-6670Progress WhatsUp Gold SQL Injection Vulnerability

Progress / WhatsUp Gold

Description

Progress WhatsUp Gold contains a SQL injection vulnerability that allows an unauthenticated attacker to retrieve the user's encrypted password if the application is configured with only a single user.

Scoring

EPSS94.66% probability of exploitation · percentile 99.8% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2024-09-16

(incoming)1

TypeTargetConfidenceTier
KEVEntryProgress WhatsUp Gold SQL Injection Vulnerabilitykev-cve-2024-66700%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Progress WhatsUp Gold Path Traversal Vulnerability
CVE
CVE-2025-13774
CVE
CVE-2026-7312
CVE
CVE-2026-7313
CVE
CVE-2026-7198
CVE
CVE-2026-7195
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.