Critical severity10.0CISA KEVNVD Advisory· Published Feb 21, 2024· Updated Jul 13, 2026
CVE-2024-1212
CVE-2024-1212
Description
Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system command execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:progress:loadmaster:*:*:*:*:*:*:*:*Range: >=7.2.48.1,<7.2.48.10
- Range: 7.2.48.1
Patches
Vulnerability mechanics
References
5- freeloadbalancer.comnvdProduct
- kemptechnologies.comnvdProduct
- support.kemptechnologies.com/hc/en-us/articles/23878931058445-LoadMaster-Security-Vulnerability-CVE-2024-1212nvdNot Applicable
- support.kemptechnologies.com/hc/en-us/articles/24325072850573-Release-Notice-LMOS-7-2-59-2-7-2-54-8-7-2-48-10-CVE-2024-1212nvdRelease Notes
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
3- 6th July – Threat Intelligence ReportCheck Point Research · Jul 6, 2026
- Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation AttemptsThe Hacker News · Jul 1, 2026
- Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-AuthThe Hacker News · Jun 30, 2026