← Back

CVE-2026-59689

nvd nist
Published: Jul 27, 2026Modified: Aug 11, 2026

JSON object

Loading...
8.0
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.1 / Impact: 5.9
Source: security@progress.com (Secondary)

Description

An Incorrect Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an authenticated attacker with low privileges to escalate privileges to root on the affected appliance, potentially resulting in full system compromise.

Affected (5)

4 products
Ecs Connection Manager
Loadmaster
Moveit Web Application Firewall
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Before 7.2.63.3
Before 7.2.63.3
Progress
Before 7.2.54.19
From 7.2.55.0 to 7.2.63.3
Before 7.2.63.3

Timeline

No history available yet.