CVE Vulnerabilities

CVE-2008-7100

Published: Aug 27, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in DotNetNuke 4.4.1 through 4.8.4 allows remote authenticated users to bypass authentication and gain privileges via unknown vectors related to a unique id for user actions and improper validation of a user identity.

Affected Software

NameVendorStart VersionEnd Version
DotnetnukeDotnetnuke4.4.1 (including)4.4.1 (including)
DotnetnukeDotnetnuke4.5.2 (including)4.5.2 (including)
DotnetnukeDotnetnuke4.5.4 (including)4.5.4 (including)
DotnetnukeDotnetnuke4.5.5 (including)4.5.5 (including)
DotnetnukeDotnetnuke4.6.0 (including)4.6.0 (including)
DotnetnukeDotnetnuke4.6.1 (including)4.6.1 (including)
DotnetnukeDotnetnuke4.6.2 (including)4.6.2 (including)
DotnetnukeDotnetnuke4.7.0 (including)4.7.0 (including)
DotnetnukeDotnetnuke4.8.0 (including)4.8.0 (including)
DotnetnukeDotnetnuke4.8.1 (including)4.8.1 (including)
DotnetnukeDotnetnuke4.8.2 (including)4.8.2 (including)
DotnetnukeDotnetnuke4.8.3 (including)4.8.3 (including)
DotnetnukeDotnetnuke4.8.4 (including)4.8.4 (including)

References