📦

openedge

Vendor: progress

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 3 Remote Access
Total CVEs 30 Total Indexed
Avg. EPSS 2.22% Exploit Prob.
Latest CVE CVE-2024-7654 Sep 03

Security Vulnerability Index

Page 2 / 3
10.0 CVSS

Heap-based buffer overflow in _mprosrv.exe in Progress Software Progress 9.1E and OpenEdge 10.1x, as used by the RSA Authentication Manager 6.0 and 6.1, SecurID Appliance 2.0, ACE/Server 5.2, and possibly other products, allows remote attackers to execute arbitrary code via crafted packets. NOTE: this issue might overlap CVE-2007-3491.

EPSS: 2.04%
7.5 CVSS

Buffer overflow in _mprosrv in Progress Software OpenEdge before 9.1E0422, and 10.x before 10.1B01, allows remote attackers to have an unknown impact via a malformed TCP/IP message.

EPSS: 3.49%