CVE-2017-0929
40Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 9.2%
from disclosure to weapon
Published on NVDJul 3
VulnCheck+2270d
exploitation probability
9.2%top 5% of all CVEs
observed exploitation
yesVulnCheck
DNN (aka DotNetNuke) before 9.2.0 suffers from a Server-Side Request Forgery (SSRF) vulnerability in the DnnImageHandler class. Attackers may be able to access information about internal network resources.
Affected products
n/a · n/a