CyberSec.Space Logo
Back to CVE Browser

CVE-2018-9126

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0100%
EPSS Percentile27.05th
PublishedApr 4, 2018
Last ModifiedNov 21, 2024

Vulnerability Description

The DNNArticle module 11 for DNN (formerly DotNetNuke) allows remote attackers to read the web.config file, and consequently discover database credentials, via the /GetCSS.ashx/?CP=%2fweb.config URI.

Affected Platforms (CPE)

πŸ“¦
Zldnn

Dnnarticle

= 11

References & Advisories

Related Vulnerabilities