Known vulnerabilities in UI for ASP.NET AJAX
Vendor:
Progress Telerik
Software:
UI for ASP.NET AJAX
Software CPE:
cpe:2.3:a:progress:ui_for_aspnet_ajax:*:*:*:*:*:*:*:*
Website:
https://www.telerik.com/
Total vulnerabilities:
5
Public exploits:
4
Known exploited (KEV):
4
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU118743 - Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') CVE-2025-3600 |
CWE-470 | Medium | 2025.1.416 | 25.11.2025 |
SB2025112527 SB2025112528 |
||
| #VU77480 - Insufficiently Protected Credentials CVE-2017-9248 |
CWE-522 | High | R2 2017 SP1 | 16.06.2023 |
SB2017062927 |
||
| #VU47861 - Deserialization of Untrusted Data CVE-2019-18935 |
CWE-502 | High | 2020.1.114 | 11.12.2019 |
SB2019121133 SB20230418154 SB20230418155 |
||
| #VU9686 - Permissions, Privileges, and Access Controls CVE-2017-11357 |
CWE-264 | High | - | 19.12.2017 |
SB2017121901 SB2018021329 |
||
| #VU9684 - Permissions, Privileges, and Access Controls CVE-2017-11317 |
CWE-264 | High | - | 14.12.2017 |
SB2017121901 |