RaqibCTI
CVE

CVE-2025-2746

P2
Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability
Kentico · Xperience CMS
Date added (CISA)
2025-10-20
Remediation due
2025-11-10
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date

ATT&CK mapping

No ATT&CK mapping yet
The CTID Mappings Explorer hasn't published an exploitation/impact technique mapping for this CVE yet.

Source: NVD ↗ · CISA KEV Catalog ↗

CVE-2025-2746: Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability · RaqibCTI