Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-2531

Ipswitch WhatsUp Professional 2006 only verifies the user's identity via HTTP headers, which allows remote attackers to spoof being a trusted console and bypass authentication by setting HTTP User-Agent header to "Ipswitch/1.0" and the User-Application header to "NmConsole".
Exploit prediction scoring system (EPSS) score
EPSS Score 0.047
EPSS Ranking 88.8%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-2531
  • Ipswitch » Whatsup » Version: professional_2006
    cpe:2.3:a:ipswitch:whatsup:professional_2006


Contact Us

Shodan ® - All rights reserved