Telerik UI for ASP.NET AJAX vulnerabilities
1 published alerts for Progress Telerik UI for ASP.NET AJAX.
Actively exploited (KEV)Ransomware
Progress Telerik UI for ASP.NET AJAX Deserialization of Untrusted Data Vulnerability
Progress Telerik UI for ASP.NET AJAX is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2019-18935). Progress Telerik UI for ASP.NET AJAX contains a deserialization of untrusted data vulnerability through RadAsyncUpload which leads to code execution on the server in the context of the w3wp.exe process. CISA remediation due date: 2022-05-03. If you need help checking exposure, call (864) 335-9223.