Authentication Bypass and Denial of Service Vulnerability in Sitefinity

Authentication Bypass and Denial of Service Vulnerability in Sitefinity

CVE-2017-15883 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Sitefinity 5.1, 5.2, 5.3, 5.4, 6.x, 7.x, 8.x, 9.x, and 10.x allow remote attackers to bypass authentication and consequently cause a denial of service on load balanced sites or gain privileges via vectors related to weak cryptography.

Learn more about our Web Application Penetration Testing UK.