CVE-2018-18326
03.07.2019, 17:15
DNN (aka DotNetNuke) 9.2 through 9.2.2 incorrectly converts encryption key source values, resulting in lower than expected entropy. NOTE: this issue exists because of an incomplete fix for CVE-2018-15812.Enginsight
Vendor | Product | Version |
---|---|---|
dnnsoftware | dotnetnuke | 9.2 ≤ 𝑥 ≤ 9.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References