First published: Wed Nov 13 2024(Updated: )
In Progress Telerik UI for WPF versions prior to 2024 Q4 (2024.4.1111), a code execution attack is possible through an insecure deserialization vulnerability.
Credit: security@progress.com
Affected Software | Affected Version | How to fix |
---|---|---|
Telerik UI for WPF | <2024.4.1111 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10012 is rated as a high severity vulnerability due to its potential for remote code execution.
To fix CVE-2024-10012, upgrade your Telerik UI for WPF to version 2024 Q4 (2024.4.1111) or later.
CVE-2024-10012 affects all Telerik UI for WPF versions prior to 2024 Q4 (2024.4.1111).
Yes, CVE-2024-10012 can be exploited remotely through this insecure deserialization vulnerability.
CVE-2024-10012 is an insecure deserialization vulnerability that allows for code execution attacks.