Progress Telerik Document Processing Libraries是美国Progress公司的一个文档处理库。 Progress Telerik Document Processing Libraries 2025 Q1版本之前存在路径遍历漏洞,该漏洞源于解压档案操作可能导致任意文件系统访问。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Progress Software | Telerik Document Processing Libraries | 1.0.0 ~ 2025.1.205 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0556 | 8.8 HIGH | Telerik Report Server Clear Text Transmission of Agent Commands |
| CVE-2024-12251 | 7.8 HIGH | Improper neutralization special element in hyperlinks |
| CVE-2025-0332 | 7.8 HIGH | Progress UI for WinForms decompression path traversal vulnerability |
| CVE-2024-11629 | 7.1 HIGH | Telerik Document Processing RTF Export of Arbitrary File Path |
| CVE-2024-12629 | 4.1 MEDIUM | Prototype Pollution in Progress® Telerik® KendoReact |
| CVE-2024-11628 | 4.1 MEDIUM | Prototype Pollution in Progress® Telerik® Kendo UI for Vue |
No comments yet