CVE-2024-1212
קריטית 9.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Progress Kemp LoadMaster OS Command Injection Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
תיאור (מקור, אנגלית)
Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system command execution.
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 95% (אחוזון 100) נכון ל-25/7/2026
- CWE
- CWE-78
מוצרים מושפעים
progress: loadmaster
קישורים
- https://freeloadbalancer.com/ Product
- https://kemptechnologies.com/ Product
- https://support.kemptechnologies.com/hc/en-us/articles/23878931058445-LoadMast… Not Applicable
- https://support.kemptechnologies.com/hc/en-us/articles/24325072850573-Release-… Release Notes
- https://freeloadbalancer.com/ Product
- https://kemptechnologies.com/ Product
- https://support.kemptechnologies.com/hc/en-us/articles/23878931058445-LoadMast… Not Applicable
- https://support.kemptechnologies.com/hc/en-us/articles/24325072850573-Release-… Release Notes
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-202… US Government Resource