CVE-2024-0832
31.01.2024, 16:15
In Telerik Reporting versions prior to 2024 R1, a privilege elevation vulnerability has been identified in the applications installer component. In an environment where an existing Telerik Reporting install is present, a lower privileged user has the ability to manipulate the installation package to elevate their privileges on the underlying operating system.Enginsight
Vendor | Product | Version |
---|---|---|
progress_software | telerik_reporting | 𝑥 < 2024-r1 |
progress | telerik_reporting | 𝑥 < 18.0.24.130 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration