Vulnerability CVE-2024-7292


Published: 2024-10-09

Description:
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a credential stuffing attack is possible through improper restriction of excessive login attempts.

Type:

CWE-307

(Improper Restriction of Excessive Authentication Attempts)

 References:
https://docs.telerik.com/report-server/knowledge-base/improper-restriction-of-excessive-login-attempts-cve-2024-7292

Copyright 2024, cxsecurity.com

 

Back to Top