Beveiligingsadvies

CVE-2026-2878

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-25 14:45:11
Laatst bijgewerkt 2026-02-27 17:06:16
Toegewezen door ProgressSoftware
CVSS-score 5.3
Status PUBLISHED

Beschrijving

In Progress® Telerik® UI for AJAX, versions prior to 2026.1.225, an insufficient entropy vulnerability exists in RadAsyncUpload, where a predictable temporary identifier, based on timestamp and filename, can enable collisions and file content tampering.