CVE-2014-5287: High severity Kemptechnologies Loadmaster vulnerability
Published Jan 8, 2020
·Updated
A Bash script injection vulnerability exists in Kemp Load Master 7.1-16 and earlier due to a failure to sanitize input in the Web User Interface (WUI).
Affected Software
2 affected components
Kemptechnologies Loadmaster<=7.1-16
Progress LoadMaster<=7.1-16
Event History
Jan 8, 2020
CVE Published
via MITRE·04:36 PM
Data Sourced
via MITRE·04:36 PM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-5287?
CVE-2014-5287 has a medium severity rating, indicating a moderate risk of potential exploitation.
2
What versions of Kemp LoadMaster are affected by CVE-2014-5287?
Kemp LoadMaster versions up to and including 7.1-16 are affected by CVE-2014-5287.
3
How do I fix CVE-2014-5287?
To fix CVE-2014-5287, upgrade Kemp LoadMaster to a version above 7.1-16 which contains the relevant patches.
4
What type of vulnerability is CVE-2014-5287?
CVE-2014-5287 is a Bash script injection vulnerability due to input sanitization failures in the Web User Interface.
5
Can CVE-2014-5287 lead to remote code execution?
Yes, CVE-2014-5287 may allow an attacker to execute arbitrary Bash commands on the affected Kemp LoadMaster device.