Progress Telerik Report Server Authentication Bypass (CVE-2024-4358) (Direct Check)

critical Nessus Plugin ID 200109

Version 1.32

Oct 16, 2025, 4:39 PM

  • Logic Changes (Implement workaround in HTTP library to prevent triggering an engine bug.)

Plugin Feed: 202510161639

Version 1.30

Oct 1, 2025, 9:12 PM

  • Logic Changes (Adding support for user-supplied header added to all HTTP requests.)

Plugin Feed: 202510012112

Version 1.29

Sep 30, 2025, 12:41 AM

  • Logic Changes (Add extra checks to see whether plugins should run. Modernisation of the HTTP/1 library. Various corrections and fixes for CPE related Flatline Test Failures. Remove spurious authentication header.)

Plugin Feed: 202509300041

Version 1.27

Jul 15, 2025, 2:39 AM

  • Logic Changes

Plugin Feed: 202507150239

Version 1.26

Jul 10, 2025, 5:41 PM

  • Logic Changes (Windows CA support)

Plugin Feed: 202507101741

Version 1.25

Feb 12, 2025, 3:29 PM

  • Logic Changes

Plugin Feed: 202502121529

Version 1.24

Feb 12, 2025, 1:58 AM

  • Logic Changes

Plugin Feed: 202502120158

Version 1.23

Feb 10, 2025, 4:00 PM

  • Logic Changes

Plugin Feed: 202502101600

Version 1.21

Jan 22, 2025, 5:44 PM

  • New

Plugin Feed: 202501221744

Version 1.19

Jan 13, 2025, 10:27 PM

  • New

Plugin Feed: 202501132227

Version 1.15

Nov 22, 2024, 6:54 PM

  • Logic Changes (Fixed installation reporting)

Plugin Feed: 202411221854

Version 1.14

Nov 12, 2024, 8:29 PM

  • Logic Changes (Adding installs report)

Plugin Feed: 202411122029

Version 1.13

Oct 10, 2024, 11:57 PM

  • New

Plugin Feed: 202410102357

Version 1.10

Jul 26, 2024, 11:33 AM

  • IAVM reference

Plugin Feed: 202407261133

Version 1.7

Jul 17, 2024, 11:02 PM

  • Logic Changes

Plugin Feed: 202407172302

Version 1.5

Jun 13, 2024, 9:53 PM

  • CISA reference

Plugin Feed: 202406132153

Version 1.4

Jun 13, 2024, 7:31 AM

  • Exploit attributes ("Exploit framework metasploit" set to "True")

Plugin Feed: 202406130731

Version 1.3

Jun 6, 2024, 7:33 AM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploitability ease" set to "Exploits are available")

Plugin Feed: 202406060733

Version 1.2

Jun 5, 2024, 10:19 PM

  • CEA reference

Plugin Feed: 202406052219

Version 1.1

Jun 5, 2024, 10:55 AM

  • New

Plugin Feed: 202406051055

* Changelogs are generally available for changes made after Nov 1, 2022