S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2015-7823 Scanner

CVE-2015-7823 scanner - Open Redirect vulnerability in Kentico CMS

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.4k
Times Used
continuous scan runs
3.9k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2015-7823
5.8
CVSS

Open redirect vulnerability in CMSPages/GetDocLink.ashx in Kentico CMS 8.2 through 8.2.41 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the link parameter.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Kentico CMS is a web content management system that helps businesses to create and manage their online presence. With Kentico, users can easily create, edit, and publish web pages, emails, and online stores. It is a popular software used by thousands of businesses around the world, from small and medium-sized enterprises to large corporations. The software is designed for non-technical users, making it easy for anyone to manage their website without needing advanced technical knowledge.

CVE-2015-7823 is a vulnerability that was detected in Kentico CMS 8.2 through 8.2.41. This vulnerability is related to an open redirect in CMSPages/GetDocLink.ashx, which can allow remote attackers to redirect users to arbitrary websites and conduct phishing attacks via a URL in the link parameter. This is a serious vulnerability that can put businesses at risk of data breaches and other cyberattacks.

When exploited, this vulnerability can lead to various risks, including phishing attacks, malware infections, and data breaches. Attackers could redirect users to fake websites that look identical to legitimate ones, tricking them into entering sensitive information such as login credentials, bank account details, and credit card information. This can result in financial losses, reputation damage, and legal consequences.

In conclusion, proactively addressing vulnerabilities in digital assets is crucial to managing risk in today's digital era. With the pro features of s4e.io platform, businesses can easily and quickly learn about vulnerabilities in their digital assets. This allows them to take necessary precautions and stay protected from potential threats. By being proactive and taking appropriate safety measures, businesses can ensure their online presence is secure and protected.

 

REFERENCES

Solution Advice

To protect against this vulnerability, users of Kentico CMS should take the following precautions:

  • Apply the latest security patches and updates from Kentico
  • Review and audit the URLs on the website to ensure they are not vulnerable to open redirect attacks
  • Implement input validation to prevent the injection of malicious links
  • Use web application firewalls to detect and block attacks
  • Train employees on how to recognize and avoid phishing attacks.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2015-7823 scanner - Open Redirect vulnerability in Kentico CMS | S4E