In Progress® Telerik® Report Server versions prior to 2024 Q2 (10.1.24.709), a remote code execution attack is possible through an insecure deserialization vulnerability.
https://securityaffairs.com/166168/security/telerik-report-server-cve-2024-6327.html?web_view=true
https://securityticks.com/cve-2024-6327/?utm_source=rss&utm_medium=rss&utm_campaign=cve-2024-6327
https://thehackernews.com/2024/07/critical-flaw-in-telerik-report-server.html
https://www.helpnetsecurity.com/2024/07/26/cve-2024-6327/
https://securityaffairs.com/166168/security/telerik-report-server-cve-2024-6327.html
https://cybersecuritynews.com/progress-telerik-report-server-flaw/
https://www.telerik.com/report-server
https://www.telerik.com/report-server
https://docs.telerik.com/report-server/knowledge-base/deserialization-vulnerability-cve-2024-6327
https://docs.telerik.com/report-server/knowledge-base/deserialization-vulnerability-cve-2024-6327