High severity8.3NVD Advisory· Published Sep 3, 2024· Updated Jun 17, 2026
CVE-2024-7345
CVE-2024-7345
Description
Local ABL Client bypass of the required PASOE security checks may allow an attacker to commit unauthorized code injection into Multi-Session Agents on supported OpenEdge LTS platforms up to OpenEdge LTS 11.7.18 and LTS 12.2.13 on all supported release platforms
Affected products
3cpe:2.3:a:progress:openedge:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:progress:openedge:*:*:*:*:*:*:*:*range: <=11.7.18
- (no CPE)range: <=11.7.18, <=12.2.13
- (no CPE)range: 11.7.0
Patches
Vulnerability mechanics
References
1- community.progress.com/s/article/Direct-local-client-connections-to-MS-Agents-can-bypass-authenticationnvdMitigationVendor Advisory
News mentions
0No linked articles in our index yet.