Security Advisory

CVE-2018-17060

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-10-08 16:00:00
Last updated 2024-08-05 10:39:59
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Telerik Extensions for ASP.NET MVC (all versions) does not whitelist requests, which can allow a remote attacker to access files inside the server's web directory. NOTE: this product has been obsolete since June 2013.