CyberSec.Space Logo
返回 CVE 浏览器

CVE-2019-19392

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1240%
EPSS Percentile31.37th
Published2020年1月21日
Last Modified2024年11月21日

Vulnerability Description

The forDNN.UsersExportImport module before 1.2.0 for DNN (formerly DotNetNuke) allows an unprivileged user to import (create) new users with Administrator privileges, as demonstrated by Roles="Administrators" in XML or CSV data.

Affected Platforms (CPE)

📦
Fordnn

Usersexportimport

< 1.2.0

References & Advisories

相关漏洞威胁