Vulnerability Details CVE-2008-7102
DotNetNuke 2.0 through 4.8.4 allows remote attackers to load .ascx files instead of skin files, and possibly access privileged functionality, via unknown vectors related to parameter validation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.5%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2008-7102
-
cpe:2.3:a:dotnetnuke:dotnetnuke:2.1.1
-
cpe:2.3:a:dotnetnuke:dotnetnuke:2.1.2
-
cpe:2.3:a:dotnetnuke:dotnetnuke:3.0.11
-
cpe:2.3:a:dotnetnuke:dotnetnuke:3.0.7
-
cpe:2.3:a:dotnetnuke:dotnetnuke:3.0.8
-
cpe:2.3:a:dotnetnuke:dotnetnuke:3.1.0
-
cpe:2.3:a:dotnetnuke:dotnetnuke:3.3.5
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.0
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.3.5
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.4.1
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.5.2
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.5.4
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.5.5
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.6.0
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.6.1
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.6.2
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.7.0
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.8.0
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.8.1
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.8.2
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.8.3
-
cpe:2.3:a:dotnetnuke:dotnetnuke:4.8.4