CVE-2017-17736
23.03.2018, 15:29
Kentico 9.0 before 9.0.51 and 10.0 before 10.0.48 allows remote attackers to obtain Global Administrator access by visiting CMSInstall/install.aspx and then navigating to the CMS Administration Dashboard.
Vendor | Product | Version |
---|---|---|
kentico | kentico_cms | 9.0 ≤ 𝑥 < 9.0.51 |
kentico | kentico_cms | 10.0 ≤ 𝑥 < 10.0.48 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration