In Progress® Telerik® Report Server versions prior to 2024 Q1 (10.0.24.130), a remote code execution attack is possible through an insecure deserialization vulnerability.
2024-03-20T13:15:11.980
2025-01-16T17:07:24.633
Analyzed
CVSSv3.1: 9.9 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | progress | telerik_report_server | < 10.0.24.130 | Yes |