DNN
cpe:2.3:a:dnnsoftware:dotnetnuke:*:*:*:*:*:*:*
- >= 7.0.0, < 10.0.1
A vulnerability in DNN.Platform versions 7.0.0 prior to 10.0.1 allows for the creation of specially crafted requests or proxies that can bypass the DNN Login IP Filters. This bypass enables login attempts from IP addresses not included in the allow list. The issue has been patched in version 10.0.1.
Exploitation of this vulnerability could lead to unauthorized login attempts from disallowed IP addresses, potentially allowing unauthorized access to the application.
Users can upgrade to DNN.Platform version 10.0.1 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.