First published: Thu Aug 27 2009(Updated: )
Unspecified vulnerability in DotNetNuke 4.0 through 4.8.4 and 5.0 allows remote attackers to obtain sensitive information (portal number) by accessing the install wizard page via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
DNN (DotNetNuke) | =4.8.2 | |
DNN (DotNetNuke) | =4.8.1 | |
DNN (DotNetNuke) | =4.8.3 | |
DNN (DotNetNuke) | =4.5.2 | |
DNN (DotNetNuke) | =4.6.2 | |
DNN (DotNetNuke) | =4.8.4 | |
DNN (DotNetNuke) | =5.0 | |
DNN (DotNetNuke) | =4.3.5 | |
DNN (DotNetNuke) | =4.5.4 | |
DNN (DotNetNuke) | =4.0 | |
DNN (DotNetNuke) | =4.4.1 | |
DNN (DotNetNuke) | =4.6.0 | |
DNN (DotNetNuke) | =4.7.0 | |
DNN (DotNetNuke) | =4.8.0 | |
DNN (DotNetNuke) | =4.5.5 | |
DNN (DotNetNuke) | =4.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-7101 is categorized as a moderate severity vulnerability that allows remote attackers to gather sensitive information.
To mitigate CVE-2008-7101, it is recommended to upgrade to a version of DotNetNuke that is not affected, specifically version 5.0 or higher.
CVE-2008-7101 affects DotNetNuke versions 4.0 through 4.8.4 and 5.0.
Exploitation of CVE-2008-7101 may allow attackers to obtain sensitive information such as the portal number.
While CVE-2008-7101 has been reported, there are no widely known public exploits specifically targeting this vulnerability.