DNN.PLATFORM是DNN开源的一个开源网络内容管理平台(CMS)。 DNN.PLATFORM 10.0.1之前版本存在安全漏洞,该漏洞源于特制请求绕过IP过滤器设计,可能导致未授权登录。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| dnnsoftware | Dnn.Platform | >= 7.0.0, < 10.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-52488 | 8.6 HIGH | DNN.PLATFORM leaks NTLM hash via SMB Share Interaction with malicious user input |
| CVE-2025-52486 | DNN.PLATFORM Allows Reflected Cross-Site Scripting (XSS) in some TokenReplace situations w | |
| CVE-2025-52485 | DNN.PLATFORM Allows Stored Cross-Site Scripting (XSS) in Activity Feed |
No comments yet