This question is locked. New answers and comments are not allowed.
Hi,
We performed a Veracode static analysis for security on our project DLLs and in the report generated we see some flaws identified in Telerik DLLs. The flaws are listed below. Please suggest how we can fix or mitigate these issues.
Our project has Silverlight 5 with C# and uses Telerik Controls version 2012.1.0215.1050
Do let me know if you need more information.
Regards,
Sandeep
We performed a Veracode static analysis for security on our project DLLs and in the report generated we see some flaws identified in Telerik DLLs. The flaws are listed below. Please suggest how we can fix or mitigate these issues.
Scope | CWE Name | Flaw Category |
TransparentThemeBackgroundConverter | Insufficient Entropy | Cryptographic Issues |
ZipOutputStream | Insecure Temporary File | Time and State |
TxtFormatProvider | Improper Resource Shutdown or Release | Code Quality |
ProtectionHelper | Insufficient Entropy | Cryptographic Issues |
RadUploadHandler | External Control of File Name or Path | Directory Traversal |
RadUploadHandler | External Control of File Name or Path | Directory Traversal |
Our project has Silverlight 5 with C# and uses Telerik Controls version 2012.1.0215.1050
Do let me know if you need more information.
Regards,
Sandeep