Description

An authentication bypass vulnerability in Kentico Xperience allows authentication bypass via the Staging Sync Server component password handling for the server defined None type. Authentication bypass allows an attacker to control administrative objects.This issue affects Xperience through 13.0.178.

INFO

Published Date :

2025-03-24T18:17:06.079Z

Last Modified :

2026-02-26T19:09:15.890Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2025-2747 vulnerability.

Vendors Products
Kentico
  • Xperience

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact