← back
CVE-2017-0929observed exploitation

CVE-2017-0929

45Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 13%
from disclosure to weapon
Published on NVDJul 3
VulnCheck+2270d
exploitation probability
13%top 4% of all CVEs
observed exploitation
yesVulnCheck
DNN (aka DotNetNuke) before 9.2.0 suffers from a Server-Side Request Forgery (SSRF) vulnerability in the DnnImageHandler class. Attackers may be able to access information about internal network resources.
Affected products
n/a · n/a