CVE-2024-4358

In Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, on IIS, an unauthenticated attacker can gain access to Telerik Report Server restricted functionality via an authentication bypass vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:telerik:report_server_2024:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-05-29 15:16

Updated : 2024-06-14 17:59


NVD link : CVE-2024-4358

Mitre link : CVE-2024-4358

CVE.ORG link : CVE-2024-4358


JSON object : View

Products Affected

telerik

  • report_server_2024
CWE
CWE-290

Authentication Bypass by Spoofing