First published: Wed Mar 20 2024(Updated: )
In Progress® Telerik® Report Server versions prior to 2024 Q1 (10.0.24.130), a remote code execution attack is possible through an insecure deserialization vulnerability.
Credit: security@progress.com
Affected Software | Affected Version | How to fix |
---|---|---|
Telerik Reporting | <10.0.24.130 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-1800 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2024-1800, upgrade your Progress Telerik Report Server to version 10.0.24.130 or later.
CVE-2024-1800 can allow unauthorized users to execute arbitrary code on vulnerable systems.
CVE-2024-1800 affects all versions of Progress Telerik Report Server prior to 2024 Q1 (10.0.24.130).
There are no reliable workarounds for CVE-2024-1800; the recommended solution is to upgrade to the patched version.