• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
proof of concept exploit released for progress software openedge vulnerability

Proof-of-Concept Exploit Released for Progress Software OpenEdge Vulnerability

You are here: Home / General Cyber Security News / Proof-of-Concept Exploit Released for Progress Software OpenEdge Vulnerability
March 11, 2024

Technological details and a evidence-of-principle (PoC) exploit have been made obtainable for a lately disclosed critical security flaw in Development Application OpenEdge Authentication Gateway and AdminServer, which could be likely exploited to bypass authentication protections.

Tracked as CVE-2024-1403, the vulnerability has a optimum severity score of 10. on the CVSS scoring procedure. It impacts OpenEdge versions 11.7.18 and earlier, 12.2.13 and previously, and 12.8..

“When the OpenEdge Authentication Gateway (OEAG) is configured with an OpenEdge Area that employs the OS area authentication provider to grant consumer-id and password logins on functioning platforms supported by lively releases of OpenEdge, a vulnerability in the authentication routines may well lead to unauthorized accessibility on attempted logins,” the enterprise explained in an advisory released late past month.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


Cybersecurity

“Equally, when an AdminServer relationship is created by OpenEdge Explorer (OEE) and OpenEdge Administration (OEM), it also utilizes the OS community authentication company on supported platforms to grant consumer-id and password logins that may possibly also guide to unauthorized login entry.”

Progress Program claimed the vulnerability improperly returns authentication achievement from an OpenEdge community domain if unforeseen types of usernames and passwords are not appropriately taken care of, foremost to unauthorized accessibility sans right authentication.

The flaw has been dealt with in variations OpenEdge LTS Update 11.7.19, 12.2.14, and 12.8.1.

Horizon3.ai, which reverse-engineered the susceptible AdminServer provider, has because produced a PoC for CVE-2024-1403, stating the issue is rooted in a operate called join() that’s invoked when a remote relationship is built.

This function, in flip, calls a further perform named authorizeUser() that validates that the equipped credentials meet up with certain requirements, and passes regulate to yet another component of the code that immediately authenticates the person if the provided username matches “NT AUTHORITYSYSTEM.”

Cybersecurity

“Deeper attacker surface area appears like it might make it possible for a person to deploy new purposes by means of distant WAR file references, but the complexity improved drastically in order to get to this attack surface area mainly because of the use of internal services message brokers and personalized messages,” security researcher Zach Hanley mentioned.

“We imagine there is once more very likely an avenue to remote code execution by means of crafted in performance specified ample investigate exertion.”

Uncovered this write-up attention-grabbing? Stick to us on Twitter  and LinkedIn to read through a lot more exceptional information we publish.


Some components of this posting are sourced from:
thehackernews.com

Previous Post: «magnet goblin hacker group leveraging 1 day exploits to deploy nerbian Magnet Goblin Hacker Group Leveraging 1-Day Exploits to Deploy Nerbian RAT
Next Post: BianLian Threat Actors Exploiting JetBrains TeamCity Flaws in Ransomware Attacks bianlian threat actors exploiting jetbrains teamcity flaws in ransomware attacks»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.