Security Advisory

CVE-2024-4357

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-15 16:58:31
Last updated 2024-08-01 20:40:46
Assigner ProgressSoftware
State PUBLISHED

Description

An information disclosure vulnerability exists in Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, allows low-privilege attacker to read systems file via XML External Entity Processing.