CVE Database
/

CVE-2026-3692

Back to search

CVE-2026-3692

Published: Apr 2, 2026

Modified: Apr 3, 2026

PUBLISHED

Description

In Progress Flowmon versions prior to 12.5.8, a vulnerability exists whereby an authenticated low-privileged user may craft a request during the report generation process that results in unintended commands being executed on the server.

VendorProductVersions

Progress Software

Flowmon

affected
Flowmon 12 versions prior to 12.5.8

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now