Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth

A critical vulnerability in Progress Kemp LoadMaster can let an unauthenticated attacker execute arbitrary commands as root on the appliance by sending a crafted request to its API.

The flaw, tracked as CVE-2026-8037, carries a CVSS score of 9.8 according to ZDI. A patch is available. If you run LoadMaster with the API enabled, update now.

Progress published its advisory on June

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

India’s first privately-developed rocket reaches orbit on dramatic debut launch

India’s first privately-developed rocket reaches orbit on dramatic debut launch Source: Hacker News

We eliminated 1,400 CVEs in NanoClaw’s container images

We eliminated 1,400 CVEs in NanoClaw’s container images Source: Hacker News

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS