CVE-2021-28141

CRITICAL

Progress Telerik UI for ASP.NET AJAX 2021.1.224 - Auth Bypass

Title source: llm
STIX 2.1

Description

An issue was discovered in Progress Telerik UI for ASP.NET AJAX 2021.1.224. It allows unauthorized access to MicrosoftAjax.js through the Telerik.Web.UI.WebResource.axd file. This may allow the attacker to gain unauthorized access to the server and execute code. To exploit, one must use the parameter _TSM_HiddenField_ and inject a command at the end of the URI. NOTE: the vendor states that this is not a vulnerability. The request's output does not indicate that a "true" command was executed on the server, and the request's output does not leak any private source code or data from the server

References (2)

Core 2
Core References
Exploit, Third Party Advisory x_refsource_misc
https://pastebin.com/JULpfvFJ
Exploit, Third Party Advisory x_refsource_misc
https://gist.github.com/shreyasfegade/e2480e26b2ed1d0c7175ecf7cb15f9c1

Scores

CVSS v3 9.8
EPSS 0.0104
EPSS Percentile 77.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-862
Status published
Products (1)
progress/telerik_ui_for_asp.net_ajax 2021.1.224
Published Mar 11, 2021
Tracked Since Feb 18, 2026