Vulnerability Description
There is an information disclosure issue in DNN (formerly DotNetNuke) 9.5 within the built-in Activity-Feed/Messaging/Userid/ Message Center module. A registered user is able to enumerate any file in the Admin File Manager (other than ones contained in a secure folder) by sending themselves a message with the file attached, e.g., by using an arbitrary small integer value in the fileIds parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dnnsoftware | Dotnetnuke | 9.5.0 |
Related Weaknesses (CWE)
References
- https://neff.blog/2020/04/04/dotnetnuke-9-5-file-path-information-disclosure/ExploitThird Party Advisory
- https://neff.blog/2020/04/04/dotnetnuke-9-5-file-path-information-disclosure/ExploitThird Party Advisory
FAQ
What is CVE-2020-11585?
CVE-2020-11585 is a vulnerability with a CVSS score of 4.3 (MEDIUM). There is an information disclosure issue in DNN (formerly DotNetNuke) 9.5 within the built-in Activity-Feed/Messaging/Userid/ Message Center module. A registered user is able to enumerate any file in ...
How severe is CVE-2020-11585?
CVE-2020-11585 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-11585?
Check the references section above for vendor advisories and patch information. Affected products include: Dnnsoftware Dotnetnuke.