← back
CVE-2017-0929observed exploitation

CVE-2017-0929

40Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 9.2%
from disclosure to weapon
Published on NVDJul 3
VulnCheck+2270d
exploitation probability
9.2%top 5% of all CVEs
observed exploitation
yesVulnCheck
DNN (aka DotNetNuke) before 9.2.0 suffers from a Server-Side Request Forgery (SSRF) vulnerability in the DnnImageHandler class. Attackers may be able to access information about internal network resources.
Affected products
n/a · n/a