References https://www.anquanke.com/post/id/299936 https://www.tenablecloud.cn/plugins/nessus/192525 https://blog.csdn.net/smellycat000/article/details/142076975 https://zone.ci/aliyun/ali_nvd/391007.html https://www.ctfiot.com/174289.html https://cn-sec.com/archives/3161664.html https://www.sentinelone.com/vulnerability-database/cve-2024-1212/ https://www.egfincirt.org.eg/progress-loadmaster-security-update-12-february-2025/ https://hivepro.com/threat-advisory/critical-rce-vulnerability-hits-progress-loadmaster/ https://www.caloes.ca.gov/wp-content/uploads/Homeland-Security/Documents/Cyber-Advisories/Cal-CSIC-Cyber-Advisory-LoadMaster-Vulnerabilitity.pdf https://digital.nhs.uk/cyber-alerts/2024/cc-4546 https://feedly.com/cve/vendors/progress https://www.bleepingcomputer.com/news/security/progress-loadmaster-vulnerable-to-10-10-severity-rce-flaw/ https://sos-vo.org/news/progress-loadmaster-vulnerable-1010-severity-rce-flaw https://nvd.nist.gov/vuln/detail/cve-2024-7591 https://rhinosecuritylabs.com/research/cve-2024-1212unauthenticated-command-injection-in-progress-kemp-loadmaster/ https://www.zerodayinitiative.com/advisories/ZDI-26-055/ https://community.progress.com/s/article/LoadMaster-Security-Vulnerabilites-CVE-2026-3517-CVE-2026-3518-CVE-2026-3519-CVE-2026-4048-CVE-2026-21876 https://www.sonicwall.com/blog/progress-kemp-loadmaster-unauthenticated-command-injection-vulnerability https://www.armis.com/threat-alert/unauthenticated-command-injection-in-progress-kemp-loadmaster/ https://www.fortiguard.com/outbreak-alert/kemp-loadmaster-os-command-injection https://github.com/advisories/GHSA-rq26-5593-xpg9
Related VulnerabilitiesPoCCVE-2026-8037: Progress ADC LoadMaster - Command InjectionProgress Kemp LoadMaster /accessv2 命令执行漏洞(CVE-2026-8037)Progress WhatsUp Gold /NmConsole/Platform/PerformanceMonitorErrors/HasErrors SQL 注入漏洞(CVE-2024-6670)PoCCVE-2026-2699: Progress ShareFile Storage Zones Controller - Authentication BypassProgress ShareFile Storage Zones Controller /ConfigService/Admin.aspx 权限绕过漏洞(CVE-2026-2699)Progress Chef Automate /api/v0/compliance/profiles/search SQL 注入漏洞(CVE-2025-8868)Progress Telerik Report Server /Startup/Register 未授权访问漏洞(CVE-2024-4358)PoCCVE-2024-1212: Progress Kemp LoadMaster - Command InjectionPoCCVE-2024-2389: Progress Kemp Flowmon - Command InjectionPoCCVE-2024-4358: Progress Telerik Report Server - Authentication BypassPoCCVE-2024-4885: Progress Software WhatsUp Gold GetFileWithoutZip Directory Traversal - Remote Code Execution