DNN (aka DotNetNuke) 9.2 up to and including 9.2.2 uses a weak encryption algorithm to protect input parameters. NOTE: this issue exists because of an incomplete fix for CVE-2018-15811.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dnnsoftware dotnetnuke |