Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4885 articles · 221209 vulns · 37/41 feeds (7d)
← Back to list
7.5
CVE-2026-18672PATCHED
progress · telerik ui for asp.net ajax

RadImageEditor ClientState Unauthenticated Arbitrary File Read Vulnerability in Telerik UI for ASP.NET AJAX

Description

In Progress® Telerik® UI for AJAX prior to v2026.3.812, insufficient validation of client-supplied state in RadImageEditor may allow an attacker to influence which file is returned by the control's image cache, potentially exposing file contents outside the intended image directories.

Affected Products

VendorProductVersions
progresstelerik ui for asp.net ajax2011.2.712

References

  • https://www.telerik.com/products/aspnet-ajax/documentation/knowledge-base/kb-security-rie-path-traversal-cve-2026-18672(vendor-advisory)

Related News (2 articles)

Tier B
CCCS Canada20d ago
Progress Software security advisory (AV26-875)
→ No new info (linked only)
Tier C
VulDB20d ago
CVE-2026-18672 | Progress Telerik UI for ASP.NET AJAX up to 2026.2.708 RadImageEditor path traversal
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.17.5 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CISA KEV❌ No
Actively exploited❌ No
Patch available
2026.3.812
CWECWE-22
PublishedSep 2, 2026
Trending Score5
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-80462
Privilege Escalation in Progress Chef Automate
Trending: 12
HIGHCVE-2026-13184
RadAsyncUpload Default HMAC Key Fallback Vulnerability in Telerik UI for ASP.NET AJAX
Trending: 9
HIGHCVE-2026-13183
RadAsyncUpload Upload Metadata Timing Oracle Vulnerability in Telerik UI for ASP.NET AJAX
Trending: 9
HIGHCVE-2026-19219
DialogHandler UploadPaths Tampering Vulnerability in Telerik UI for ASP.NET AJAX
Trending: 5
HIGHCVE-2026-16139
Arbitrary file write via path traversal in Progress ShareFile Storage Zones Controller potentially leading to remote code execution
Trending: 1

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Sep 2, 2026
Discovered by ZDM
Sep 2, 2026
Patch Available
Sep 2, 2026