Kentico v10.0.42 allows Global Administrators to read the cleartext SMTP Password by navigating to the SMTP configuration page. NOTE: the vendor considers this a best-practice violation but not a vulnerability. The vendor plans to fix it at a future time
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kentico kentico 10.0.42 |