目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

Progress Software 厂商漏洞列表 / CVE 中文分析 55

Progress Software 厂商相关 55 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

Progress Software 主要提供企业级应用开发平台及数据库解决方案。其产品线历史上频繁出现远程代码执行、SQL 注入及身份验证绕过等高危漏洞,累计收录 CVE 达 55 条。值得关注的是,其 OpenEdge 和 Telerik 组件常因默认配置不当或补丁更新滞后成为攻击目标。厂商需持续强化代码审计与供应链安全,以应对日益复杂的自动化攻击手段,确保企业核心业务系统的稳定性与数据机密性。

CVE IDタイトルCVSS深刻度公開日
CVE-2025-0332 Progress UI for WinForms decompression path traversal vulnerability — Progress® Telerik® UI for WinFormsCWE-22 7.8 High2025-02-12
CVE-2025-0556 Telerik Report Server Clear Text Transmission of Agent Commands — Telerik Report ServerCWE-319 8.8 High2025-02-12
CVE-2024-12251 Improper neutralization special element in hyperlinks — Telerik UI for WinUICWE-77 7.8 High2025-02-12
CVE-2024-10095 Progress UI for WPF format provider unsafe deserialization vulnerability — Telerik UI for WPFCWE-502 8.4 High2024-12-16
CVE-2024-8049 Telerik Document Processing Improper Handling of Memory Resources — Telerik Document Processing LibrariesCWE-834 6.5 Medium2024-11-13
CVE-2024-10012 Progress UI for WPF format provider unsafe deserialization vulnerability — Telerik UI for WPFCWE-502 7.8 High2024-11-13
CVE-2024-10013 Progress UI for WinForms format provider unsafe deserialization vulnerability — Telerik UI for WinFormsCWE-502 7.8 High2024-11-13
CVE-2024-8015 Telerik Report Server Insecure Type Resolution — Telerik ReportingCWE-470 9.1 Critical2024-10-09
CVE-2024-7840 Improper neutralization special element in hyperlinks — Telerik ReportingCWE-77 7.8 High2024-10-09
CVE-2024-8048 Telerik Reporting Insecure Expression Evaluation — Telerik ReportingCWE-470 7.8 High2024-10-09
CVE-2024-8014 Telerik Reporting EntityDataSource Insecure Type Resolution — Telerik ReportingCWE-470 8.8 High2024-10-09
CVE-2024-8316 Progress UI for WPF format provider unsafe deserialization vulnerability — Telerik UI for WPFCWE-502 7.8 High2024-09-25
CVE-2024-7576 Progress UI for WPF format provider unsafe deserialization vulnerability — Telerik UI for WPFCWE-502 7.8 High2024-09-25
CVE-2024-7575 Improper neutralization special element in hyperlinks — Telerik UI for WPFCWE-77 7.8 High2024-09-25
CVE-2024-7679 Improper neutralization special element in hyperlinks — Telerik UI for WinFormsCWE-77 7.8 High2024-09-25
CVE-2024-4837 Trust Boundary Violation Vulnerability — Telerik Report ServerCWE-200 5.3 Medium2024-05-15
CVE-2024-4357 XML External Entity Processing Information Disclosure — Telerik Report ServerCWE-611 6.5 Medium2024-05-15
CVE-2024-2389 Flowmon Unauthenticated Command Injection Vulnerability — FlowmonCWE-78 10.0 Critical2024-04-02
CVE-2024-2449 LoadMaster Cross-Site Request Forgery (CSRF) — LoadMasterCWE-352 7.5 High2024-03-22
CVE-2024-2448 LoadMaster Command Injection Vulnerability — LoadMasterCWE-78 8.4 High2024-03-22
CVE-2024-2291 MOVEit Transfer Logging Bypass Vulnerability — MOVEit TransferCWE-778 4.3 Medium2024-03-20
CVE-2024-1212 LoadMaster Pre-Authenticated OS Command Injection — LoadMasterCWE-78 10.0 Critical2024-02-21
CVE-2024-0833 Privilege Elevation via Telerik Test Studio — Telerik Test StudioCWE-269 7.8 High2024-01-31
CVE-2024-0832 Privilege Elevation via Telerik Reporting Installer — Telerik ReportingCWE-269 7.8 High2024-01-31
CVE-2024-0219 Privilege Elevation via Telerik JustDecompile Installer — Telerik JustDecompileCWE-269 7.8 High2024-01-31

本页汇总了 Progress Software 厂商截至目前公开的全部 55 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。