CVE-2024-1212 Exploitation - Progress Kemp LoadMaster Unauthenticated Command Injection — Detection Rule

Detects potential exploitation of CVE-2024-1709 an unauthenticated command injection in Progress Kemp LoadMaster. It looks for GET requests to '/access/set' API with the parameters 'param=enableapi' and 'value=1' as well as an "Authorization" header with a base64 encoded value with an uncommon character.

Read the full analysis on IntelFusions