VendorsProgresstelerik_reportingall versions
Vulnerabilities

Progress Telerik Reporting

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2024-6096
Unsafe Deserialization Vulnerability
Published 2024-07-24 · Modified
9.8EPSS 0.009
CVE-2024-1856
Progress Telerik Reporting Remote Deserialization Vulnerability
Published 2024-03-20 · Analyzed
8.8EPSS 0.011
CVE-2024-8014
Telerik Reporting EntityDataSource Insecure Type Resolution
Published 2024-10-09 · Modified
8.8EPSS 0.006
CVE-2024-7293
Password policy for new users is not strong enough
Published 2024-10-09 · Analyzed
8.8EPSS 0.003
CVE-2024-4202
Progress Telerik Reporting Local Instantiation Vulnerability
Published 2024-05-15 · Analyzed
8.6EPSS 0.003
CVE-2024-7840
Improper neutralization special element in hyperlinks
Published 2024-10-09 · Modified
7.8EPSS 0.007
CVE-2024-1801
Progress Telerik Reporting Local Deserialization Vulnerability
Published 2024-03-20 · Analyzed
7.8EPSS 0.004
CVE-2024-4200
Progress Telerik Reporting Local Deserialization Vulnerability
Published 2024-05-15 · Analyzed
7.8EPSS 0.003
CVE-2024-8048
Telerik Reporting Insecure Expression Evaluation
Published 2024-10-09 · Modified
7.8EPSS 0.002
CVE-2024-0832
Privilege Elevation via Telerik Reporting Installer
Published 2024-01-31 · Modified
7.8EPSS 0.002
CVE-2024-7294
Uncontrolled resource consumption of anonymous endpoints
Published 2024-10-09 · Analyzed
7.5EPSS 0.003
CVE-2024-4357
XML External Entity Processing Information Disclosure
Published 2024-05-15 · Analyzed
6.5EPSS 0.007
CVE-2017-9140
Cross-site scripting (XSS) vulnerability in Telerik.ReportViewer.WebForms.dll in Telerik Reporting for ASP.NET WebForms Report Viewer control before R1 2017 SP2 (11.0.17.406) allows remote attackers to inject arbitrary web script or HTML via the bgColor parameter to Telerik.ReportViewer.axd.
Published 2017-05-22 · Modified
6.1EPSS 0.097
CVE-2024-6097
Absolute Path Traversal Vulnerability
Published 2025-02-12 · Analyzed
5.3EPSS 0.005