CVE-2017-11357 KEV EXPLOIT
9.8
CRITICAL · CVSS 3.1 · EPSS 77.7% (pctl 100)
Patch first
On CISA KEV — known exploited in the wild, due 2023-02-16.
Description
Progress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restrict user input to RadAsyncUpload, which allows remote attackers to perform arbitrary file uploads or execute arbitrary code.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 77.68% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-434 |
| On CISA KEV | yes — remediate by 2023-02-16 |
| Public exploit | yes |
| Published | 2017-08-23 |
| Last modified | 2026-08-14 |
CISA KEV
| Name | Telerik UI for ASP.NET AJAX Insecure Direct Object Reference Vulnerability |
|---|---|
| Added | 2023-01-26 |
| Due | 2023-02-16 |
| Vendor / product | Telerik / User Interface (UI) for ASP.NET AJAX |
| Ransomware use | known |
Affected (1)
| Vendor | Product |
|---|---|
| progress | telerik ui for asp.net ajax |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Telerik UI for ASP.NET AJAX 2012.3.1308 < 2017.1.118 - Arbitrary File Upload | 2018-01-24 |
References
- http://www.telerik.com/support/kb/aspnet-ajax/upload-%28async%29/details/insecure-direct-object-reference
- https://www.exploit-db.com/exploits/43874/
- http://www.telerik.com/support/kb/aspnet-ajax/upload-%28async%29/details/insecure-direct-object-reference
- https://www.exploit-db.com/exploits/43874/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-11357
→ the Explorer · watch your stack · NVD