CVE-2025-2746
Beschrijving NL
Kentico Xperience CMS bevat een authenticatie-bypass met behulp van een alternatief pad of kanaalkwetsbaarheid waarmee een aanvaller administratieve objecten kan beheren.
Vereiste actie: pas mitigaties toe volgens de instructies van de leverancier, volg de toepasselijke BOD 22-01-richtlijnen voor cloudservices of stop het gebruik van het product als er geen mitigaties beschikbaar zijn.
Origineel (Engels) tonen
Kentico Xperience CMS contains an authentication bypass using an alternate path or channel vulnerability that could allow an attacker to control administrative objects.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.