📦 Telerik Reporting

by Progress

🔍 What is Telerik Reporting?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-7294

HIGH CVSS 7.5 Oct 9, 2024

This vulnerability allows attackers to launch HTTP Denial-of-Service attacks against Progress Telerik Report Server by targeting anonymous endpoints that lack rate limiting. This affects all organizat...

CVE-2024-8014

HIGH CVSS 8.8 Oct 9, 2024

This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of Progress Telerik Reporting. Attackers can exploit insecure type resolution to inject mali...

CVE-2024-4200

HIGH CVSS 7.7 May 15, 2024

This vulnerability allows a local threat actor to execute arbitrary code on systems running vulnerable versions of Progress Telerik Reporting. The attack exploits insecure deserialization, enabling at...

CVE-2024-6097

MEDIUM CVSS 5.3 Feb 12, 2025

This vulnerability allows a local threat actor to disclose sensitive information through absolute path traversal in Progress Telerik Reporting. It affects versions prior to 2025 Q1 (19.0.25.211) and r...

CVE-2024-4357

MEDIUM CVSS 6.5 May 15, 2024

This CVE describes an XML External Entity (XXE) vulnerability in Progress Telerik Report Server that allows low-privilege authenticated attackers to read arbitrary files from the server's filesystem. ...