CVE-2024-11343

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Feb 12, 2025
Updated: Feb 20, 2025
CWE ID 22

Summary

CVE-2024-11343 is a newly disclosed vulnerability affecting the In Progress® Telerik® Document Processing Libraries. Versions prior to Q1 2025 (2025.1.205) are susceptible to this issue. The vulnerability enables an attacker to gain arbitrary file system access by manipulating archive files during the unzipping process. Successful exploitation could potentially result in unauthorized access to sensitive data or system modifications. Users are strongly encouraged to update to the latest, secure version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share