CVE-2025-32373
EUVD-2025-1471109.04.2025, 16:15
DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In limited configurations, registered users may be able to craft a request to enumerate/access some portal files they should not have access to. This vulnerability is fixed in 9.13.8.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dnnsoftware | dotnetnuke | 𝑥 < 9.13.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration