Description
A denial of service vulnerability in Kentico Xperience allows attackers to launch DoS attacks via specially crafted requests to the GetResource handler. Improper input validation enables remote attackers to potentially disrupt service availability through maliciously constructed requests.
Problem types
Improper Neutralization of Server-Side Includes (SSI) Within a Web Page
Product status
Credits
Federico Girardi
References
devnet.kentico.com/download/hotfixes (Kentico DevNet Hotfixes)
www.vulncheck.com/...e-getresource-handler-denial-of-service (VulnCheck Advisory: Kentico Xperience <= 12.0.98 GetResource Handler Denial of Service)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.