PT-2026-64902 · Progress · Ecs Connections Manager+3

CVE-2026-59687

·

Publicado

2026-07-27

·

Atualizado

2026-07-27

CVSS v3.1

8.4

Alta

VetorAV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an authenticated attacker with high privileges to execute arbitrary operating system commands on the affected appliance via the Geo Location management interface, potentially resulting in complete system compromise.

Correção

OS Command Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-59687

Produtos afetados

Ecs Connections Manager
Loadmaster
Moveit Waf
Object Scale Connection Manager