CVE-2015-7823: Medium severity kentico cms vulnerability
Open redirect vulnerability in CMSPages/GetDocLink.ashx in Kentico CMS 8.2 through 8.2.41 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the link parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7823?
CVE-2015-7823 is classified as a medium severity vulnerability due to its ability to facilitate phishing attacks.
How do I fix CVE-2015-7823?
To fix CVE-2015-7823, upgrade to Kentico CMS version 8.2.42 or later, which addresses the open redirect vulnerability.
What are the risks associated with CVE-2015-7823?
The risks associated with CVE-2015-7823 include unauthorized redirection of users to malicious websites, leading to potential phishing attacks.
Which versions of Kentico CMS are affected by CVE-2015-7823?
CVE-2015-7823 affects Kentico CMS versions 8.2 through 8.2.41.
Is CVE-2015-7823 a remote exploit?
Yes, CVE-2015-7823 is a remote exploit that allows attackers to redirect users to arbitrary web sites.