CVE-2024-56134: Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection.
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection.
This issue affects:
Product
Affected Versions
LoadMaster
From 7.2.55.0 to 7.2.60.1 (inclusive)
From 7.2.49.0 to 7.2.54.12 (inclusive)
7.2.48.12 and all prior versions
Multi-Tenant Hypervisor
7.1.35.12 and all prior versions
ECS
All prior versions to 7.2.60.1 (inclusive)
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56134?
CVE-2024-56134 is classified as an Improper Input Validation vulnerability allowing OS Command Injection.
How do I fix CVE-2024-56134?
To fix CVE-2024-56134, users should upgrade their Progress LoadMaster to versions above 7.2.60.1 or apply the latest security patches provided by Progress.
Which versions of Progress LoadMaster are affected by CVE-2024-56134?
CVE-2024-56134 affects Progress LoadMaster versions from 7.2.49.0 to 7.2.60.1, inclusive.
Does CVE-2024-56134 affect other Progress products?
Yes, CVE-2024-56134 also impacts Progress Multi-Tenant Hypervisor up to version 7.1.35.12 and Progress ECS up to version 7.2.60.1.
What kind of attack can exploit CVE-2024-56134?
CVE-2024-56134 can be exploited through OS Command Injection attacks, allowing unauthorized execution of commands on the system.