CVE-2017-9822

DNN (aka DotNetNuke) before 9.1.1 has Remote Code Execution via a cookie, aka "2017-08 (Critical) Possible remote code execution on DNN sites."
Configurations

Configuration 1 (hide)

cpe:2.3:a:dnnsoftware:dotnetnuke:*:*:*:*:*:*:*:*

History

12 Feb 2025, 19:55

Type Values Removed Values Added
CWE NVD-CWE-noinfo

07 Feb 2025, 14:15

Type Values Removed Values Added
CWE CWE-94

Information

Published : 2017-07-20 12:29

Updated : 2025-04-20 01:37


NVD link : CVE-2017-9822

Mitre link : CVE-2017-9822

CVE.ORG link : CVE-2017-9822


JSON object : View

Products Affected

dnnsoftware

  • dotnetnuke
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')