CVE-2008-6542
30.03.2009, 01:30
Unspecified vulnerability in the Skin Manager in DotNetNuke before 4.8.2 allows remote authenticated administrators to perform "server-side execution of application logic" by uploading a static file that is converted into a dynamic script via unknown vectors related to HTM or HTML files.Enginsight
Vendor | Product | Version |
---|---|---|
dotnetnuke | dotnetnuke | 𝑥 ≤ 4.8.1 |
dotnetnuke | dotnetnuke | 1.0.6 |
dotnetnuke | dotnetnuke | 1.0.7 |
dotnetnuke | dotnetnuke | 1.0.8 |
dotnetnuke | dotnetnuke | 1.0.9 |
dotnetnuke | dotnetnuke | 1.0.10d:d |
dotnetnuke | dotnetnuke | 1.0.10e:e |
dotnetnuke | dotnetnuke | 2.1.1 |
dotnetnuke | dotnetnuke | 2.1.2 |
dotnetnuke | dotnetnuke | 3.0.7 |
dotnetnuke | dotnetnuke | 3.0.8 |
dotnetnuke | dotnetnuke | 3.0.11 |
dotnetnuke | dotnetnuke | 3.1.0 |
dotnetnuke | dotnetnuke | 4.0 |
dotnetnuke | dotnetnuke | 4.5.2 |
𝑥
= Vulnerable software versions
References