CVE-2024-4200 - CERT CVE
ID CVE-2024-4200
Sažetak In Progress® Telerik® Reporting versions prior to 2024 Q2 (18.1.24.2.514), a code execution attack is possible by a local threat actor through an insecure deserialization vulnerability.
Reference
CVSS
Base: 7.7
Impact: 6.0
Exploitability:1.1
Pristup
VektorSloženostAutentikacija
LOCAL LOW HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 16-01-2025 - 18:07
Objavljeno 15-05-2024 - 17:15