HomeProgressCVE-2024-56131

CVE-2024-56131

HIGH
8.4CVSS
Published: 2025-02-05
Updated: 2025-07-31
AI Analysis

Description

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    7.2.48.12 and all prior versions Multi-Tenant Hypervisor 7.1.35.12 and all prior versions ECS All prior versions to 7.2.60.1 (inclusive)

CVSS Metrics

Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Attack Vector
adjacent network
Complexity
low
Privileges
high
User Action
none
Scope
changed
Confidentiality
high
Integrity
high
Availability
high
Weaknesses
CWE-20

Metadata

Primary Vendor
PROGRESS
Published
2/5/2025
Last Modified
7/31/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

progress : multi-tenant_loadmasterprogress : loadmasterprogress : loadmasterprogress : loadmaster

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief