Back

HIGH

Improper neutralization special element in hyperlinks

Published Sep 25, 2024

Description

In Progress Telerik UI for WinForms versions prior to 2024 Q3 (2024.3.924), a command injection attack is possible through improper neutralization of hyperlink elements.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ProgressSoftware
Published Sep 25, 2024
Updated Sep 25, 2024
Reserved Aug 10, 2024
CISA Vulnrichment
Updated Sep 25, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a