CVE-2017-9822

8.8HIGH

DNN (aka DotNetNuke) before 9.1.1 has Remote Code Execution via a cookie, aka "2017-08 (Critical) Possible remote code execution on DNN sites."

Publicado: 7/20/2017Actualizado: 10/22/2025

Vulnerabilidad Explotada Conocida (CISA)

DotNetNuke (DNN) contains a vulnerability that may allow for remote code execution via cookie deserialization.

Acción Requerida:

Apply updates per vendor instructions.

Fecha Límite:

2022-05-03

Uso de Ransomware Conocido

Descripción

DNN (aka DotNetNuke) before 9.1.1 has Remote Code Execution via a cookie, aka "2017-08 (Critical) Possible remote code execution on DNN sites."

Análisis IAImpulsado por IA

Productos Afectados

dnnsoftwaredotnetnuke

Exploits Disponibles (1)

Referencias