CVE report
CVE-2024-7591critical
Kemp LoadMaster Load Balancer - Unauthenticated Command Injection
Events 90d
54
Distinct IPs
47
Severity
critical
CISA KEV
Not listed
Detection signature
An event counts toward CVE-2024-7591 when its URL path contains any of these (case-insensitive). This is what our matching is based on.
- Β· /progs/homepage
- Β· /progs/status/login
Pre-disclosure activity
all early actors βAnalysing probe history around the publication dateβ¦
Recent probe volume (last 7 days)
peak: 5 events/dayeventsdistinct IPs
Downloads & integrations
Top sources probing for CVE-2024-7591
- 45.156.129.1282 eventsPortugal
- 45.156.129.1212 eventsPortugal
- 185.226.196.302 eventsPortugal
- 45.156.128.1572 eventsPortugal
- 45.156.129.1202 eventsPortugal
- 185.226.196.192 eventsPortugal
- 109.105.209.172 eventsPortugal
- 45.156.128.1581 eventsPortugal
- 45.156.129.1231 eventsPortugal
- 45.156.128.1731 eventsPortugal
- 185.180.141.671 eventsPortugal
- 45.156.129.1131 eventsPortugal
- 185.226.196.281 eventsPortugal
- 109.105.209.201 eventsPortugal
- 185.226.197.681 eventsPortugal
- 45.156.129.1261 eventsPortugal
- 185.226.196.241 eventsPortugal
- 109.105.210.851 eventsPortugal
- 45.156.128.1061 eventsPortugal
- 45.156.129.1621 eventsPortugal
- 45.156.129.1631 eventsPortugal
- 185.226.196.181 eventsPortugal
- 45.156.129.1061 eventsPortugal
- 185.226.198.41 eventsPortugalΒ· Sistemas Informaticos, S.A.
- 185.226.196.221 eventsPortugal
- 45.156.128.1791 eventsPortugal
- 185.226.198.51 eventsPortugalΒ· Sistemas Informaticos, S.A.
- 109.105.210.821 eventsPortugal
- 45.156.129.1651 eventsPortugal
- 185.226.196.201 eventsPortugal
Top networks the attempts come from
Fingerprints of the clients exploiting this
The HTTP (JA4H) and TLS (JA4) fingerprints seen on these attempts. Click one to see the whole population that carries it.
Sample request paths observed
- /progs/homepage