CVE-2017-11357CISA KEVEPSS p99.5%

CVE-2017-11357Telerik UI for ASP.NET AJAX Insecure Direct Object Reference Vulnerability

Telerik / User Interface (UI) for ASP.NET AJAX

Description

Telerik UI for ASP.NET AJAX contains an insecure direct object reference vulnerability in RadAsyncUpload that can result in file uploads in a limited location and/or remote code execution.

Scoring

EPSS75.71% probability of exploitation · percentile 99.5% · 2026-06-17T12:03:21Z

CISA KEV entry

Added to KEV: 2023-01-26

(incoming)1

TypeTargetConfidenceTier
KEVEntryTelerik UI for ASP.NET AJAX Insecure Direct Object Reference Vulnerabilitykev-cve-2017-113570%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Telerik UI for ASP.NET AJAX Unrestricted File Upload Vulnerability
CVE
Progress Telerik UI for ASP.NET AJAX Deserialization of Untrusted Data Vulnerability
CVE
Progress Telerik UI for ASP.NET AJAX and Sitefinity Cryptographic Weakness Vulnerability
CVE
CVE-2026-6023
CVE
Microsoft .NET Framework Remote Code Execution Vulnerability
CVE
Microsoft Internet Explorer Remote Code Execution Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.