First published: Wed Nov 13 2024(Updated: )
In Progress Telerik UI for WinForms versions prior to 2024 Q4 (2024.4.1113), a code execution attack is possible through an insecure deserialization vulnerability.
Credit: security@progress.com
Affected Software | Affected Version | How to fix |
---|---|---|
Progress Telerik UI for WinForms | <2024.4.1113 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10013 is classified as a critical vulnerability due to the potential risk of code execution.
To fix CVE-2024-10013, upgrade to Telerik UI for WinForms version 2024 Q4 (2024.4.1113) or later.
The risk associated with CVE-2024-10013 includes the possibility of an attacker executing arbitrary code on affected systems.
Versions of Telerik UI for WinForms prior to 2024 Q4 (2024.4.1113) are affected by CVE-2024-10013.
Yes, CVE-2024-10013 is exploitable due to the insecure deserialization vulnerability present in the affected versions.