SQL Injection Vulnerability in Kentico CMS Blog Module
CVE-2021-27581
9.8CRITICAL
What is CVE-2021-27581?
The Blog module within Kentico CMS version 5.5 R2 build 5.5.3996 is susceptible to SQL injection attacks through the 'tagname' parameter. An attacker can exploit this vulnerability to execute arbitrary SQL queries, potentially leading to unauthorized access to sensitive data or manipulation of the database.