Description
Kentico CMS is an ASP.NET web content management system.
The Kentico installation wizard is found in the web application. An attacker can install a new site and get Global Administrator access.
Remediation
Restrict access to the installation wizard
References
Related Vulnerabilities
WordPress Plugin Advanced Custom Fields PRO Multiple Security Bypass Vulnerabilities (5.10)
WordPress Plugin Stripe For WooCommerce Security Bypass (3.3.9)
WordPress Plugin HashThemes Demo Importer Security Bypass (1.1.1)
Database User Has Admin Privileges
WordPress Plugin MAC PHOTO GALLERY Multiple Security Bypass Vulnerabilities (3.0)