
Telerik UI exploit chain enables unauthenticated RCE on ASP.NET apps — public PoC now released
Security firm TantoSec has released a working exploit that chains four Telerik UI vulnerabilities to achieve unauthenticated remote code execution on ASP.NET applications, putting millions of enterprise deployments at risk if unpatched.








