Home/Product/progress loadmaster
Product

progress loadmaster

22 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-4048
< 7.2.63.1
OS Command Injection Remote Code Execution Vulnerability in UI in Progress ADC Products allows an authenticated attacker with “A
8.4HIGH
CVE-2026-3519
< 7.2.63.1
OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an authenticated attacker with “
8.4HIGH
CVE-2026-3518
< 7.2.63.1
OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an authenticated attacker with “
8.4HIGH
CVE-2026-3517
< 7.2.63.1
OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an authenticated attacker with “
8.4HIGH
CVE-2025-13447
< 7.2.62.2
OS Command Injection Remote Code Execution Vulnerability in API in Progress LoadMaster allows an authenticated attacker with “Us
8.4HIGH
CVE-2025-13444
< 7.2.62.2
OS Command Injection Remote Code Execution Vulnerability in API in Progress LoadMaster allows an authenticated attacker with “Us
8.4HIGH
CVE-2025-1758
>= 7.2.40.0 and < 7.2.61.1
Improper Input Validation vulnerability in Progress LoadMaster allows : Buffer OverflowThis issue affects: * LoadMaster: 7.2.40.0
4.3MEDIUM
CVE-2024-56135
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue af
8.4HIGH
CVE-2024-56134
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue af
8.4HIGH
CVE-2024-56133
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue af
8.4HIGH
CVE-2024-56132
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue af
8.4HIGH
CVE-2024-56131
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue af
8.4HIGH
CVE-2024-8755
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection.This issue affe
8.4HIGH
CVE-2024-6658
<= 7.2.48.12
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS Command Injection.This issue affect
8.4HIGH
CVE-2024-7591
>= 7.2.40.0 and <= 7.2.60.0
Improper Input Validation vulnerability in Progress LoadMaster allows OS Command Injection.This issue affects: * LoadMaster: 7.2.
10.0CRITICAL
CVE-2024-3544
>= 7.2.55.0 and < 7.2.59.4
Unauthenticated attackers can perform actions, using SSH private keys, by knowing the IP address and having access to the same net
7.5HIGH
CVE-2024-3543
>= 7.2.55.0 and < 7.2.59.4
Use of reversible password encryption algorithm allows attackers to decrypt passwords. Sensitive information can be easily unenc
6.4MEDIUM
CVE-2024-2449
>= 7.2.55.0 and < 7.2.59.3
A cross-site request forgery vulnerability has been identified in LoadMaster. It is possible for a malicious actor, who has prio
7.5HIGH
CVE-2024-2448
>= 7.2.55.0 and < 7.2.59.3
An OS command injection vulnerability has been identified in LoadMaster. An authenticated UI user with any permission settings m
8.4HIGH
CVE-2024-1212
>= 7.2.48.1 and < 7.2.48.10
Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system comm
10.0CRITICAL
CVE-2014-5288
< 7.1.20b
A CSRF Vulnerability exists in Kemp Load Master before 7.0-18a via unspecified vectors in administrative pages.
8.8HIGH
CVE-2014-5287
<= 7.1-16
A Bash script injection vulnerability exists in Kemp Load Master 7.1-16 and earlier due to a failure to sanitize input in the Web
8.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin