Latest Progress Software vulnerability #
On February 27, 2024, Progress Software disclosed an authentication bypass vulnerability in its OpenEdge Authentication Gateway and AdminServer applications.
This vulnerability, identified as CVE-2024-1403, allows attackers to bypass checks and access the system without authentication. Successful exploitation of this vulnerability would allow attackers to access systems with arbitrary privileges, potentially including administrative privileges.
The vendor indicates that the OpenEdge Authentication Gateway is potentially vulnerable based on configuration, but that the AdminServer product is vulnerable regardless of configuration.
What is the impact? #
Successful exploitation of these vulnerabilities would allow attackers to execute arbitrary commands with full privileges on the target system, potentially leading to complete system compromise.
Are updates or workarounds available? #
The vendor has released updates that fix these issues. The vendor recommends that all users upgrade to this version immediately.
How do I find Progress OpenEdge Authentication Gateway and AdminServer installations with runZero? #
From the Services Inventory, use the following query to locate potentially vulnerable systems:
html.title:="Progress Application Home"
Additional fingerprinting research is ongoing, and additional queries will be published as soon as possible.