A Critical Flaw in Progress Kemp LoadMaster Exposes Thousands of Organizations to Cyber Threats
The US Cybersecurity and Infrastructure Security Agency (CISA) has just added a new vulnerability to its Catalog of Known Exploits (KEV), highlighting a critical flaw in the Progress Kemp LoadMaster application delivery controller (ADC). The issue, which affects various versions of the software, has seen 792 reported exploit attempts since it was discovered. Organizations using the LoadMaster ADC are urged to take immediate action to secure their systems.
The vulnerability, identified as CVE-2023-3839, stems from a weakness in the way the LoadMaster handles authentication requests. Specifically, an attacker can manipulate the authentication process by injecting malicious input, allowing them to bypass security measures and gain unauthorized access to sensitive data. This type of attack is known as a “cross-domain privilege escalation,” where an attacker exploits differences in security settings between different domains or systems.
The affected organizations span various industries, including finance, healthcare, and government institutions. CISA emphasizes that the vulnerability can be exploited by both internal actors with administrative privileges and external attackers, making it a significant concern for organizations that rely on the LoadMaster ADC to manage their network traffic and application delivery. It’s worth noting that while the vulnerability is present in multiple versions of the software, not all versions are equally susceptible to exploitation.
To put this into perspective, think of the LoadMaster ADC as a key choke point in an organization’s network architecture, controlling access to sensitive areas and applications. If compromised, it can serve as a stepping stone for attackers to gain further access to the system. The vulnerability’s impact is twofold: not only does it expose organizations to direct attacks, but it also increases the risk of lateral movement within the network.
Given the severity of this issue, we strongly advise affected organizations to review their security posture and take immediate action to address the vulnerability. This includes applying patches or updates for the LoadMaster ADC, implementing additional authentication and authorization controls, and conducting thorough risk assessments to identify potential entry points for attackers. While the exploit attempts reported so far have been contained, it’s essential that organizations remain vigilant and proactive in securing their systems against this critical flaw.
As a practical takeaway, we recommend that all organizations with a LoadMaster ADC installation regularly review CISA’s KEV catalog and stay informed about newly discovered vulnerabilities. By staying ahead of emerging threats, you can minimize the risk of a successful attack and protect your organization from potential breaches.
Source: The Hacker News — 2026-08-08