AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2017-11357.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSCISA known exploitedAdded Jan 26, 2023
RECORD STATUSAwaiting NVD dataModified Jan 26, 2023

Disclosure summary

Telerik UI for ASP.NET AJAX contains an insecure direct object reference vulnerability in RadAsyncUpload that can result in file uploads in a limited location and/or remote code execution.

CISA remediation guidance

Apply updates per vendor instructions.

Original records & references

PUBLISHED 2023-01-26T00:00:00-05:00
MODIFIED 2023-01-26T00:00:00-05:00
INGESTED 2026-10-06T11:42:58-04:00