Vulnerability Details CVE-2019-6242
Kentico v10.0.42 allows Global Administrators to read the cleartext SMTP Password by navigating to the SMTP configuration page. NOTE: the vendor considers this a best-practice violation but not a vulnerability. The vendor plans to fix it at a future time
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.1%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 4.0
Products affected by CVE-2019-6242
-
cpe:2.3:a:kentico:kentico:10.0.42