CVE Vulnerabilities

CVE-2008-7100

Published: Aug 27, 2009 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in DotNetNuke 4.4.1 through 4.8.4 allows remote authenticated users to bypass authentication and gain privileges via unknown vectors related to a unique id for user actions and improper validation of a user identity.

Affected Software

Name Vendor Start Version End Version
Dotnetnuke Dotnetnuke 4.4.1 4.4.1
Dotnetnuke Dotnetnuke 4.5.2 4.5.2
Dotnetnuke Dotnetnuke 4.5.4 4.5.4
Dotnetnuke Dotnetnuke 4.5.5 4.5.5
Dotnetnuke Dotnetnuke 4.6.0 4.6.0
Dotnetnuke Dotnetnuke 4.6.1 4.6.1
Dotnetnuke Dotnetnuke 4.6.2 4.6.2
Dotnetnuke Dotnetnuke 4.7.0 4.7.0
Dotnetnuke Dotnetnuke 4.8.0 4.8.0
Dotnetnuke Dotnetnuke 4.8.1 4.8.1
Dotnetnuke Dotnetnuke 4.8.2 4.8.2
Dotnetnuke Dotnetnuke 4.8.3 4.8.3
Dotnetnuke Dotnetnuke 4.8.4 4.8.4

References