DNN site Import could use an external source with a crafted request
Low severity
GitHub Reviewed
Published
May 23, 2025
in
dnnsoftware/Dnn.Platform
•
Updated May 23, 2025
Description
Published to the GitHub Advisory Database
May 23, 2025
Reviewed
May 23, 2025
Published by the National Vulnerability Database
May 23, 2025
Last updated
May 23, 2025
A malicious SuperUser (Host) could craft a request to use an external url for a site export to then be imported.
References