CVE-2024-7292
EUVD-2024-4823609.10.2024, 15:15
In ProgressĀ® TelerikĀ® Report Server versions prior to 2024 Q3 (10.2.24.806), a credential stuffing attack is possible through improper restriction of excessive login attempts.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| progress | telerik_report_server | 𝑥 < 10.2.24.806 |
𝑥
= Vulnerable software versions