Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system command execution.
References
Configurations
Configuration 1 (hide)
|
History
19 Nov 2024, 17:24
Type | Values Removed | Values Added |
---|---|---|
First Time |
Progress loadmaster
Progress |
|
CPE | cpe:2.3:a:progress:loadmaster:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
References | () https://freeloadbalancer.com/ - Product | |
References | () https://kemptechnologies.com/ - Product | |
References | () https://support.kemptechnologies.com/hc/en-us/articles/23878931058445-LoadMaster-Security-Vulnerability-CVE-2024-1212 - Not Applicable | |
References | () https://support.kemptechnologies.com/hc/en-us/articles/24325072850573-Release-Notice-LMOS-7-2-59-2-7-2-54-8-7-2-48-10-CVE-2024-1212 - Release Notes |
22 Feb 2024, 19:07
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
21 Feb 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-21 18:15
Updated : 2024-11-19 17:24
NVD link : CVE-2024-1212
Mitre link : CVE-2024-1212
CVE.ORG link : CVE-2024-1212
JSON object : View
Products Affected
progress
- loadmaster
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')