CVE-2024-56135

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    7.2.48.12 and all prior versions ECS All prior versions to 7.2.60.1 (inclusive)
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:progress:multi-tenant_loadmaster:*:*:*:*:*:*:*:*
cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*
cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*
cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*

History

31 Jul 2025, 13:47

Type Values Removed Values Added
References () https://community.progress.com/s/article/LoadMaster-Security-Vulnerability-CVE-2024-56131-CVE-2024-56132-CVE-2024-56133-CVE-2024-56134-CVE-2024-56135 - () https://community.progress.com/s/article/LoadMaster-Security-Vulnerability-CVE-2024-56131-CVE-2024-56132-CVE-2024-56133-CVE-2024-56134-CVE-2024-56135 - Vendor Advisory
First Time Progress loadmaster
Progress multi-tenant Loadmaster
Progress
Summary
  • (es) Vulnerabilidad de validación de entrada incorrecta de usuario autenticado en progreso LoadMaster permite: Inyección de comandos del sistema operativo. Este problema afecta a: Producto Versiones afectadas LoadMaster De 7.2.55.0 a 7.2.60.1 (incluida) De 7.2.49.0 a 7.2.54.12 (incluida) 7.2.48.12 y todas las versiones anteriores ECS Todas las versiones anteriores a 7.2.60.1 (incluida)
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*
cpe:2.3:a:progress:multi-tenant_loadmaster:*:*:*:*:*:*:*:*

05 Feb 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-05 18:15

Updated : 2025-07-31 13:47


NVD link : CVE-2024-56135

Mitre link : CVE-2024-56135

CVE.ORG link : CVE-2024-56135


JSON object : View

Products Affected

progress

  • multi-tenant_loadmaster
  • loadmaster
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo