Critical severity9.8NVD Advisory· Published Mar 5, 2021· Updated Jun 17, 2026
CVE-2021-27581
CVE-2021-27581
Description
The Blog module in Kentico CMS 5.5 R2 build 5.5.3996 allows SQL injection via the tagname parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Kentico/CMSdescription
- Range: 5.5 R2 build 5.5.3996
5.5 R2 build 5.5.3996+ 1 more
- (no CPE)range: 5.5 R2 build 5.5.3996
- cpe:2.3:a:kentico:kentico_cms:5.5:r2:build_5.5.3996:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- gist.github.com/stasinopoulos/673ae3c31d703b4d67449f4d8888c686nvdThird Party Advisory
- kontent.ainvdProductVendor Advisory
- www.obrela.com/kentico-cms-critical-vulnerability/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.