Telerik UI是保加利亚Telerik公司的一款用于应用程序开发的UI(用户界面)控件套件。 Telerik UI 2024 Q3 (2024.3.821)之前版本存在命令注入漏洞,该漏洞源于可通过不当中和超链接元素来发起命令注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Progress Software | Telerik UI for WPF | 2011.3.1116 ~ 2024.3.924 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-7576 | 7.8 HIGH | Progress UI for WPF format provider unsafe deserialization vulnerability |
| CVE-2024-7679 | 7.8 HIGH | Improper neutralization special element in hyperlinks |
| CVE-2024-8316 | 7.8 HIGH | Progress UI for WPF format provider unsafe deserialization vulnerability |
No comments yet