OS Command Injection Vulnerability in LoadMaster
CVE-2024-2448
What is CVE-2024-2448?
A vulnerability has been identified in LoadMaster, developed by Kemp Technologies, that allows OS command injection through a compromised user interface. An authenticated user with any permission settings can exploit this flaw by injecting commands into the UI component, potentially leading to unintended command execution on the operating system level. This vulnerability underscores the importance of rigorous access controls and regular updates to maintain system integrity and security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
LoadMaster 7.2.55.0
LoadMaster 7.2.55.0 < 7.2.59.3 ( LoadMaster GA)
LoadMaster 7.2.49.0 < 7.2.54.9 ( LoadMaster LTSF)
References
EPSS Score
22% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved