Progress Software Corporation vendor intelligence

Progress Software Corporation Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting Progress Software Corporation products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
5
Known exploited vulnerabilities affecting Progress Software Corporation products
In CISA KEV
4
Records also listed in the official catalog
Beyond CISA KEV
1
Additional exploited CVEs absent from CISA KEV
Sensor Observed
0
Progress Software Corporation KEVs with sensor-observed exploitation activity

The catalog gap matters for Progress Software Corporation exposure

One of the five exploited Progress Software Corporation CVEs tracked here are not in CISA KEV. Teams relying on the official catalog alone would miss one-fifth of this vendor portfolio.

80%
Covered by CISA
20%
Beyond CISA
3
Product families

Attested Progress Software Corporation CVEs

Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2024-6671

WhatsUp Gold GetStatisticalMonitorList SQL Injection Authentication Bypass Vulnerability

WhatsUp Gold High Beyond CISA 04 Jun 2026
CVE-2023-40044

WS_FTP Server Ad Hoc Transfer Module .NET Deserialization Vulnerability

WS_FTP Server Confirmed In CISA 05 Oct 2023
CVE-2024-4358

Registration Authentication Bypass Vulnerability

Telerik Report Server Confirmed In CISA 13 Jun 2024
CVE-2024-6670

WhatsUp Gold HasErrors SQL Injection Authentication Bypass Vulnerability

WhatsUp Gold Confirmed In CISA 16 Sep 2024
CVE-2024-4885

WhatsUp Gold GetFileWithoutZip Directory Traversal Remote Code Execution Vulnerability

WhatsUp Gold Confirmed In CISA 03 Mar 2025

Showing 5 of 5 Progress Software Corporation known exploited vulnerabilities.

Recurring weakness patterns

Neutralization, limitation, and authentication bypass by spoofing account for four mapped occurrences across this Progress Software Corporation KEV portfolio.

Browse all KEVs →

Early warning alerts

Get alerts on high-impact exploitation

Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.

Occasional high-impact alerts. Unsubscribe anytime. See our Privacy Policy.