Kemp.LoadMaster.verify_perms.Command.Injection

description-logoDescription

This indicates an attack attempt to exploit a Code Injection Vulnerability in Kemp LoadMaster.
The vulnerability is due to insufficient sanitizing of user-supplied input. An attacker can exploit this issue to inject arbitrary code, which will be executed in the target user's system.

description-logoOutbreak Alert

FortiGuard network sensors detect attack attempts targeting the Progress Kemp LoadMaster. Successful exploitation of the CVE-2024-1212 vulnerability allows unauthenticated remote attackers to access the system through the management interface, potentially leading to data breaches, service disruptions, or further attacks

View the full Outbreak Alert Report

affected-products-logoAffected Products

Kemp LoadMaster and LoadMaster Multi-Tenant from 7.2.48.1 prior to 7.2.48.10
Kemp LoadMaster and LoadMaster Multi-Tenant from 7.2.54.0 prior to 7.2.54.8
Kemp LoadMaster and LoadMaster Multi-Tenant from 7.2.55.0 prior to 7.2.59.2

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2024-11-21 29.908
Modified
Name:Kemp.
LoadMaster.
verify_perms.
Code.
Injection:Kemp.
LoadMaster.
verify_perms.
Command.
Injection
2024-05-23 27.792
Modified
Default_action:pass:drop
2024-04-18 27.771
New