Progress Kemp LoadMaster Alert: Multiple RCE and WAF Bypass Flaws Patched
ID: 067f3ee0-3c5c-565f-9e59-1f224aeff778
STIX ID: report--067f3ee0-3c5c-565f-9e59-1f224aeff778
Feed Name: securityonline.info
Threat Score
Progress Kemp LoadMaster disclosed five high-severity vulnerabilities (including OS command injection CVEs and a WAF bypass via multipart Content-Type handling) that could allow authenticated attackers to execute arbitrary commands or evade WAF protections; multiple GA and LTSF versions are affected and administrators are urged to upgrade to the patched releases (e.g., v7.2.63.1 / v7.2.54.17) and apply the April 20 patch immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
