Progress / Telerik Reporting
17 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-6097 | Absolute Path Traversal Vulnerability | MEDIUM | 5.3 | Feb 12, 2025 |
| CVE-2024-8015 | Telerik Report Server Insecure Type Resolution | CRITICAL | 9.1 | Oct 9, 2024 |
| CVE-2024-7294 | Uncontrolled resource consumption of anonymous endpoints | HIGH | 7.5 | Oct 9, 2024 |
| CVE-2024-7293 | Password policy for new users is not strong enough | HIGH | 8.8 | Oct 9, 2024 |
| CVE-2024-7840 | Improper neutralization special element in hyperlinks | HIGH | 7.8 | Oct 9, 2024 |
| CVE-2024-8048 | Telerik Reporting Insecure Expression Evaluation | HIGH | 7.8 | Oct 9, 2024 |
| CVE-2024-8014 | Telerik Reporting EntityDataSource Insecure Type Resolution | HIGH | 8.8 | Oct 9, 2024 |
| CVE-2024-6096 | Unsafe Deserialization Vulnerability | CRITICAL | 9.8 | Jul 24, 2024 |
| CVE-2024-6327 | Progress Telerik Report Server Deserialization | CRITICAL | 9.9 | Jul 24, 2024 |
| CVE-2024-4837 | Trust Boundary Violation Vulnerability | MEDIUM | 5.3 | May 15, 2024 |
| CVE-2024-4357 | XML External Entity Processing Information Disclosure | MEDIUM | 6.5 | May 15, 2024 |
| CVE-2024-4200 | Progress Telerik Reporting Local Deserialization Vulnerability | HIGH | 7.8 | May 15, 2024 |
| CVE-2024-4202 | Progress Telerik Reporting Local Instantiation Vulnerability | HIGH | 8.6 | May 15, 2024 |
| CVE-2024-1856 | Progress Telerik Reporting Remote Deserialization Vulnerability | HIGH | 8.8 | Mar 20, 2024 |
| CVE-2024-1801 | Progress Telerik Reporting Local Deserialization Vulnerability | HIGH | 7.8 | Mar 20, 2024 |
| CVE-2024-0832 | Privilege Elevation via Telerik Reporting Installer | HIGH | 7.8 | Jan 31, 2024 |
| CVE-2017-9140 | Cross-site scripting (XSS) vulnerability in Telerik.ReportViewer.WebForms.dll in Telerik Reporting for ASP.NET WebForms Report Viewer control before R1 2017 SP… | MEDIUM | 6.1 | May 22, 2017 |
Showing 1 to 17 of 17 CVEs