ClickCease

Progress Telerik Report Server Security Bypass

early warning alert
(CVE-2024-4358)
Early Warning
9 Days Early

Progress Telerik Report Server contains an authorization bypass by spoofing vulnerability that allows an attacker to obtain unauthorized access. The vulnerability allows an attacker to bypass authorization mechanisms and gain unauthorized access to the system, which can have severe consequences including:

  1. Unauthorized Data Access
  2. Privilege Escalation
  3. Integrity Compromise
  4. Service Disruption
  5. Regulatory Compliance
  6. Trust Erosion

It is crucial to address this vulnerability immediately.

Armis identified this risk 9 days earlier for our customers:

  • CISA KEV Date: June 13, 2024
  • Armis Labs: June 4, 2024