VYPR
High severity8.0NVD Advisory· Published Jul 27, 2026· Updated Aug 11, 2026

CVE-2026-59689

CVE-2026-59689

Description

An Incorrect Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an authenticated attacker with low privileges to escalate privileges to root on the affected appliance, potentially resulting in full system compromise.

Affected products

8

Patches

Vulnerability mechanics

References

1

News mentions

3