Loading
In Flowmon versions prior to 11.1.14 and 12.3.5, an operating system command injection vulnerability has been identified. An unauthenticated user can gain entry to the system via the Flowmon management interface, allowing for the execution of arbitrary system commands.
Use CWE-78, Progress vendor hub and Flowmon product page to widen CVE-2024-2389 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-3692 and CVE-2026-2737 for nearby disclosures in the same product family.