Progress Telerik Document Processing Libraries是美国Progress公司的一个文档处理库。 Progress Telerik Document Processing Libraries 2025 Q1版本之前存在安全漏洞,该漏洞源于可以将任意路径上的文件内容导出为RTF。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Progress Software | Progress® Telerik® Document Processing Libraries | 1.0.0 ~ 2025.1.205 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0556 | 8.8 HIGH | Telerik Report Server Clear Text Transmission of Agent Commands |
| CVE-2024-11343 | 8.3 HIGH | Telerik Document Processing Path Traversal |
| CVE-2024-12251 | 7.8 HIGH | Improper neutralization special element in hyperlinks |
| CVE-2025-0332 | 7.8 HIGH | Progress UI for WinForms decompression path traversal vulnerability |
| CVE-2024-12629 | 4.1 MEDIUM | Prototype Pollution in Progress® Telerik® KendoReact |
| CVE-2024-11628 | 4.1 MEDIUM | Prototype Pollution in Progress® Telerik® Kendo UI for Vue |
No comments yet