Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An arbitrary file upload vulnerability in the Digital Assets Manager module of DNN Corp DotNetNuke v7.0.0 to v9.10.2 allows attackers to execute arbitrary code via a crafted SVG file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DNN Corp DotNetNuke 跨站脚本漏洞
Vulnerability Description
DNN(又名DotNetNuke)是美国DNN公司的一套由微软支持、基于ASP.NET平台的开源内容管理系统(CMS)。该系统具有易于安装、可扩展、功能丰富等特点。 DNN Corp DotNetNuke v7.0.0至v9.10.2版本存在安全漏洞,该漏洞源于存在任意文件上传漏洞,攻击者通过精心制作的SVG文件可以执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A