CVE-2017-15883: Progress Sitefinity
Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.
Sitefinity 5.1, 5.2, 5.3, 5.4, 6.x, 7.x, 8.x, 9.x, and 10.x allow remote attackers to bypass authentication and consequently cause a denial of service on load balanced sites or gain privileges via vectors related to weak cryptography.
Affected products
- Progress Sitefinity: version 5.1 only; version 5.2 only; version 5.3 only; version 5.4 only; version 6.0 only; version 6.1 only; …
Published 2018-01-08. Last modified 2026-06-17.