CVE-2026-65939
MEDIUM
NVD
CVSS Score
6.8
Severity
MEDIUM
Published
Aug 12, 2026
Vendor
unknown
Description
In WhatsUp Gold versions released before 2026.0.2, a privileged attacker can create a LogToFile action specifying an arbitrary file extension within the IIS web root.