TROYANOSYVIRUS
Voltar para CVEs

CVE-2024-4202

HIGH
7.7

Descricao

In Progress® Telerik® Reporting versions prior to 2024 Q2 (18.1.24.514), a code execution attack is possible through an insecure instantiation vulnerability.

Detalhes CVE

Pontuacao CVSS v3.17.7
SeveridadeHIGH
Vetor CVSSCVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Vetor de ataqueLOCAL
ComplexidadeLOW
Privilegios necessariosHIGH
Interacao do usuarioREQUIRED
Publicado5/15/2024
Ultima modificacao1/16/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

progress:telerik_reporting

Fraquezas (CWE)

CWE-94CWE-94

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.