CVE-2025-3600

HIGH

Progress Telerik UI For Asp.net Ajax < 2025.1.218 - Denial of Service

Title source: rule

Description

In Progress® Telerik® UI for AJAX, versions 2011.2.712 to 2025.1.218, an unsafe reflection vulnerability exists that may lead to an unhandled exception resulting in a crash of the hosting process and denial of service.

Scores

CVSS v3 7.5
EPSS 0.0029
EPSS Percentile 52.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-470
Status published

Affected Products (1)

progress/telerik_ui_for_asp.net_ajax < 2025.1.218

Timeline

Published May 14, 2025
Tracked Since Feb 18, 2026