CVE-2025-13447General(progress / connection_manager_for_objectscale*)

LOWCVSS 6.8 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

OS Command Injection Remote Code Execution Vulnerability in API in Progress LoadMaster allows an authenticated attacker with “User Administration” permissions to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in the API input parameters

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • connection_manager_for_objectscale*
  • ecs_connection_manager
  • loadmaster
  • moveit_waf

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
connection_manager_for_objectscale*ecs_connection_managerloadmastermoveit_wafmulti-tenant_hypervisor

1 version affected across 5 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-09: 102-09
Signal classification1 categories
General
1100.0%
Referenced assets1 URL
Full discourse1 post
  • ET Labs@ET_Labs
    General

    72 new OPEN, 91 new PRO (72 + 19) Several New RMMs, Dynamic_DNS, Lumma Stealer, ZPHP, LandUpdate808, zgRAT, and several CVES (Quest KACE Desktop Authority -- CVE-2025-67813, Progress Software Kemp LoadMaster -- CVE-2025-13447) and more. https://community.emergingthreats.net/t/ruleset-update-summary-2026-02-09-v11121/3191

    Post summary

    The snippet lists two CVE identifiers as part of a security ruleset update but offers no further technical detail or actionable information.

    020111.1K
    5.7K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
Appprogressconnection_manager_for_objectscale*---
Appprogressecs_connection_manager---
Appprogressloadmaster---
Appprogressloadmaster---
Appprogressmoveit_waf7.2.62.1--
Appprogressmulti-tenant_hypervisor---

Explore more