Vulnerabilities (CVE)

Filtered by vendor Progress Subscribe
Filtered by product Flowmon
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-3692 1 Progress 1 Flowmon 2026-04-07 N/A 8.8 HIGH
In Progress Flowmon versions prior to 12.5.8, a vulnerability exists whereby an authenticated low-privileged user may craft a request during the report generation process that results in unintended commands being executed on the server.
CVE-2024-2389 1 Progress 1 Flowmon 2025-02-07 N/A 10.0 CRITICAL
In Flowmon versions prior to 11.1.14 and 12.3.5, an operating system command injection vulnerability has been identified.  An unauthenticated user can gain entry to the system via the Flowmon management interface, allowing for the execution of arbitrary system commands.