CVE Vulnerabilities

CVE-2008-6542

Published: Mar 30, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:N/AC:H/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in the Skin Manager in DotNetNuke before 4.8.2 allows remote authenticated administrators to perform server-side execution of application logic by uploading a static file that is converted into a dynamic script via unknown vectors related to HTM or HTML files.

Affected Software

NameVendorStart VersionEnd Version
DotnetnukeDotnetnuke*4.8.1 (including)
DotnetnukeDotnetnuke1.0.6 (including)1.0.6 (including)
DotnetnukeDotnetnuke1.0.7 (including)1.0.7 (including)
DotnetnukeDotnetnuke1.0.8 (including)1.0.8 (including)
DotnetnukeDotnetnuke1.0.9 (including)1.0.9 (including)
DotnetnukeDotnetnuke1.0.10d (including)1.0.10d (including)
DotnetnukeDotnetnuke1.0.10e (including)1.0.10e (including)
DotnetnukeDotnetnuke2.1.1 (including)2.1.1 (including)
DotnetnukeDotnetnuke2.1.2 (including)2.1.2 (including)
DotnetnukeDotnetnuke3.0.7 (including)3.0.7 (including)
DotnetnukeDotnetnuke3.0.8 (including)3.0.8 (including)
DotnetnukeDotnetnuke3.0.11 (including)3.0.11 (including)
DotnetnukeDotnetnuke3.1.0 (including)3.1.0 (including)
DotnetnukeDotnetnuke4.0 (including)4.0 (including)
DotnetnukeDotnetnuke4.5.2 (including)4.5.2 (including)

References