Description

Inedo ProGet through 2024.22 allows remote attackers to reach restricted functionality through the C# reflection layer, as demonstrated by causing a denial of service (when an attacker executes a loop calling RestartWeb) or obtaining potentially sensitive information. Exploitation can occur if Anonymous access is enabled, or if there is a successful CSRF attack.

INFO

Published Date :

2025-05-03T00:00:00.000Z

Last Modified :

2025-05-05T14:21:24.798Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-47244 vulnerability.

Vendors Products
Inedo
  • Proget

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact