CVE-2026-8037: Progress LoadMaster
Progress LoadMaster には、未認証の攻撃者が複数のコマンドエンドポイントで非認可の入力を悪用することで、LoadMaster アプライアンス上の任意のコマンドを実行できるようにするコマンドインジェクションの脆弱性が含まれています。
CISA (English)
Progress LoadMaster contains a command injection vulnerability that allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command endpoints.
- ベンダー
- Progress
- 製品
- LoadMaster
- 脆弱性
- Progress LoadMaster Command Injection Vulnerability
- 追加日
- 2026/08/07
- CISA対応期限(米国連邦機関向け)
- 2026/08/10
- ランサムウェア攻撃での利用
- 不明
- 弱点(CWE)
- CWE-77
参考情報
当サイトはCISAのカタログを情報提供のために要約したもので、セキュリティ上の助言ではありません。ベンダーの案内と公式のアドバイザリーに従ってください。
最終更新: · カタログのバージョン 2026.10.02