VulnerAlert



DESIGN
MICROSOFT
15-09-2025 21:44

CVE-2025-52487 Vulnerabilidad documentada

8.8 HIGH
Tags
#web
#source
#open
#lte
#list
#form
#add
#microsoft
#design
#cms
#bypass
#patched
#patch
#pass
#issue
#allow
Descripción
DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In versions 7.0.0 to before 10.0.1, DNN.PLATFORM allows a specially crafted request or proxy be created that could bypass design of DNN Login IP Filters allowing login attempts from Addresses not allow list. This issue has been patched version 10.0.1.
https://github.com/dnnsoftware/Dnn.Platform/security/advisories/GHSA-fjhg-3mrh-mm7h
Referencia
Link externo
Ver detalles

Fuente
https://nvd.nist.gov/vuln/detail/CVE-2025-52487
Resultados similares
Coincidentes en almenos en 50% de los tags
17-09-2025 CVE-2025-8411
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vul...
Ver información
16-09-2025 CVE-2025-47967
Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unautho...
Ver información
Icons made by Freepik from www.flaticon.com
Este Proyecto fue cofinanciado por el Consejo Nacional de Ciencia y Tecnología (CONACYT) a través del PROINNOVA 2021/2023
Proyecto realizado por