Remote Code Execution Vulnerability in Telerik Report Server
CVE-2024-8015
7.2HIGH
What is CVE-2024-8015?
A vulnerability exists in Progress Telerik Report Server versions prior to 2024 Q3 (10.2.24.924) that allows attackers to perform remote code execution. This vulnerability arises due to insecure type resolution, permitting a crafted object injection. An attacker can exploit this flaw to execute arbitrary code within the server context, compromising the integrity and confidentiality of the system. Users should ensure they update to the latest versions to mitigate potential risks associated with this vulnerability.