CVE-2017-0929
45Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 13%
from disclosure to weapon
Published on NVDJul 3
VulnCheck+2270d
exploitation probability
13%top 4% of all CVEs
observed exploitation
yesVulnCheck
DNN (aka DotNetNuke) before 9.2.0 suffers from a Server-Side Request Forgery (SSRF) vulnerability in the DnnImageHandler class. Attackers may be able to access information about internal network resources.
Affected products
n/a · n/a