Known vulnerabilities in Report Server
Vendor:
Progress Telerik
Software:
Report Server
Software CPE:
cpe:2.3:a:progress:report_server:*:*:*:*:*:*:*:*
Website:
https://www.telerik.com/
Total vulnerabilities:
4
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU94761 - Deserialization of Untrusted Data CVE-2024-6327 |
CWE-502 | Medium | 10.1.24.709 | 26.07.2024 |
SB2024072640 |
||
| #VU91592 - Authentication Bypass by Spoofing CVE-2024-4358 |
CWE-290 | High | 10.1.24.514 | 10.06.2024 |
SB2024053151 |
||
| #VU90127 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2024-4357 |
CWE-611 | Medium | 10.1.24.514 | 31.05.2024 |
SB2024053151 |
||
| #VU87723 - Deserialization of Untrusted Data CVE-2024-1800 |
CWE-502 | Medium | 10.0.24.305 | 22.03.2024 |
SB2024032229 |