Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-8755

Опубликовано: 11 окт. 2024
Источник: nvd
CVSS3: 8.4
CVSS3: 9.8
EPSS Низкий

Описание

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection.This issue affects:

 Product

Affected Versions

LoadMaster

From 7.2.55.0 to 7.2.60.1 (inclusive)

  

From 7.2.49.0 to 7.2.54.12 (inclusive)

  

7.2.48.12 and all prior versions

Multi-Tenant Hypervisor

7.1.35.12 and all prior versions

ECS

All prior versions to 7.2.60.1 (inclusive)

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*
Версия до 7.2.48.12 (включая)
cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*
Версия от 7.2.49.0 (включая) до 7.2.54.12 (включая)
cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*
Версия от 7.2.55.0 (включая) до 7.2.61.0 (исключая)

EPSS

Процентиль: 69%
0.00608
Низкий

8.4 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-78

Связанные уязвимости

CVSS3: 8.4
github
больше 1 года назад

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection.This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    7.2.48.12 and all prior versions Multi-Tenant Hypervisor 7.1.35.12 and all prior versions ECS All prior versions to 7.2.60.1 (inclusive)

EPSS

Процентиль: 69%
0.00608
Низкий

8.4 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-78