Cross-Site Scripting Vulnerability in Kentico CMS by Kentico Software
CVE-2018-6842
5.4MEDIUM
What is CVE-2018-6842?
Kentico CMS versions 10 and 11 are susceptible to a Cross-Site Scripting vulnerability that arises from the improper handling of crafted URLs, leading to the potential for unauthorized access to system pages. This flaw can enable attackers to execute arbitrary scripts in the context of an affected user's session, posing significant security risks to web applications utilizing this platform.