CVE-2024-8755
CVSS 3.1 Score 8.4 of 10 (high)
Details
Published Oct 11, 2024
Updated: Nov 15, 2024
CWE ID 20
Summary
CVE-2024-8755 is an Authenticated OS Command Injection vulnerability affecting Progress LoadMaster from versions 7.2.55.0 to 7.2.60.1 (inclusive), and from 7.2.49.0 to 7.2.54.12 (inclusive). Older versions of LoadMaster, as well as Multi-Tenant Hypervisor versions prior to 7.1.35.12, and ECS versions prior to 7.2.60.1 (inclusive) are also affected. This vulnerability arises due to improper input validation, enabling attackers to inject commands into the system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- LoadMaster