CVE-2025-3600

HIGH

Progress Telerik UI for ASP.NET AJAX 2011.2.712-2025.1.218 - Denial of Service via Unsafe Reflection

Title source: llm
STIX 2.1

Description

In Progress® Telerik® UI for AJAX, versions 2011.2.712 to 2025.1.218, an unsafe reflection vulnerability exists that may lead to an unhandled exception resulting in a crash of the hosting process and denial of service.

References (1)

Core 1

Scores

CVSS v3 7.5
EPSS 0.0060
EPSS Percentile 69.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-470
Status published
Products (1)
progress/telerik_ui_for_asp.net_ajax 2011.2712 - 2025.1.218
Published May 14, 2025
Tracked Since Feb 18, 2026