Progress fixes critical RCE flaw in Telerik Report Server, upgrade ASAP! (CVE-2024-6327)

siteadmin July 26, 2024

Progress Software has patched a critical vulnerability in its Telerik Report Server, CVE-2024-6327. Users are urged to upgrade to Telerik Reporting 2024 Q2 (v18.1.24.709) and Telerik Report Server 2024 Q2 (10.1.24.709) as soon as possible to address the issue. Alternatively, users can change the user for the Report Server Application Pool to one with limited permissions as a temporary mitigation.

Source: www.helpnetsecurity.com - Read more