Information Disclosure Vulnerability in Kentico Xperience
CVE-2019-25230
5.3MEDIUM
What is CVE-2019-25230?
An information disclosure vulnerability in Kentico Xperience enables authenticated users to gain access to sensitive system objects through the live site widget properties dialog. This vulnerability can be exploited by attackers to reveal unauthorized system information, bypassing established access controls and posing a risk to system integrity. It is imperative for users of Kentico Xperience to apply available patches promptly to mitigate this risk.
Affected Version(s)
Xperience 0 <= 12.0.0
