In Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, on IIS, an unauthenticated attacker can gain access to Telerik Report Server restricted functionality via a trust boundary violation vulnerability.
History

Thu, 16 Jan 2025 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Progress
Progress telerik Report Server
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:progress:telerik_report_server:*:*:*:*:*:*:*:*
Vendors & Products Progress
Progress telerik Report Server

cve-icon MITRE

Status: PUBLISHED

Assigner: ProgressSoftware

Published:

Updated: 2024-08-01T20:55:09.990Z

Reserved: 2024-05-13T14:44:43.479Z

Link: CVE-2024-4837

cve-icon Vulnrichment

Updated: 2024-08-01T20:55:09.990Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-15T17:15:16.187

Modified: 2025-01-16T17:05:52.440

Link: CVE-2024-4837

cve-icon Redhat

No data.