Kentico Xperience
cpe:2.3:a:kentico:xperience:*:*:*:*:*:*:*
- <= 12.0.98
A denial-of-service vulnerability has been identified in Kentico Xperience versions through 12.0.98. This vulnerability allows remote attackers to disrupt service availability by sending specially crafted requests to the GetResource handler. The issue arises from improper input validation, which enables these maliciously constructed requests to cause service disruptions.
Exploitation of this vulnerability leads to a denial-of-service condition, causing a disruption in service availability.
Users can apply the latest hotfix available for their Kentico Xperience version. Instructions for applying hotfixes can be found on the Kentico Xperience DevNet hotfixes page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.