CVE-2022-32387: High severity Kentico Kentico vulnerability
Published Jul 18, 2022
·Updated
In Kentico before 13.0.66, attackers can achieve Denial of Service via a crafted request to the GetResource handler.
Affected Software
2 affected components
Kentico Kentico<13.0.66
Kentico Xperience<13.0.66
Remediation
Patch Available
Event History
Jul 18, 2022
CVE Published
via MITRE·04:03 PM
Data Sourced
via MITRE·04:03 PM
Description
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-32387?
CVE-2022-32387 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2022-32387?
To remediate CVE-2022-32387, upgrade Kentico to version 13.0.66 or later.
3
What kind of attack does CVE-2022-32387 enable?
CVE-2022-32387 allows attackers to perform a Denial of Service attack via a specially crafted request.
4
Which versions of Kentico are affected by CVE-2022-32387?
CVE-2022-32387 affects all Kentico versions prior to 13.0.66.
5
Where can I find information on CVE-2022-32387?
Detailed information on CVE-2022-32387 can be found in the Kentico security advisory.