VendorsZLDNNdnnarticleall versions
Vulnerabilities

ZLDNN DNNArticle 11 for DNN (DotNetNuke)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-9126
The DNNArticle module 11 for DNN (formerly DotNetNuke) allows remote attackers to read the web.config file, and consequently discover database credentials, via the /GetCSS.ashx/?CP=%2fweb.config URI.
Published 2018-04-04 · Modified
9.81 PoCEPSS 0.489
CVE-2013-5117
SQL injection vulnerability in the RSS page (DNNArticleRSS.aspx) in the ZLDNN DNNArticle module before 10.1 for DotNetNuke allows remote attackers to execute arbitrary SQL commands via the categoryid parameter.
Published 2014-03-12 · Modified
7.51 PoCEPSS 0.023