CVSS v3
7.5
HIGH
EPSS Score
84.0%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
In Progress Ipswitch WhatsUp Gold 21.0.0 through 21.1.1, and 22.0.0, it is possible for an unauthenticated attacker to invoke an API transaction that would allow them to relay encrypted WhatsUp Gold user credentials to an arbitrary host.
In Progress Ipswitch WhatsUp Gold 21.0.0 through 21.1.1, and 22.0.0, it is possible for an unauthenticated attacker to invoke an API transaction that would allow them to relay encrypted WhatsUp Gold user credentials to an arbitrary host.
Active exploitation of CVE-2022-29847 has not been confirmed. The EPSS score is 84.0%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2022-29847 has a CVSS v3 base score of 7.5 (HIGH severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).