Vulnerability CVE-2024-4357


Published: 2024-05-15

Description:
An information disclosure vulnerability exists in Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, allows low-privilege attacker to read systems file via XML External Entity Processing.

 References:
https://docs.telerik.com/report-server/knowledge-base/xxe-vulnerability-cve-2024-4357

Copyright 2026, cxsecurity.com

 

Back to Top