CVE-2025-32374

DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Possible denial of service with specially crafted information in the public registration form. This vulnerability is fixed in 9.13.8.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dnnsoftware:dotnetnuke:*:*:*:*:*:*:*:*

History

26 Aug 2025, 00:43

Type Values Removed Values Added
First Time Dnnsoftware dotnetnuke
Dnnsoftware
Summary
  • (es) DNN (anteriormente DotNetNuke) es una plataforma de gestión de contenido web (CMS) de código abierto del ecosistema de Microsoft. Posible denegación de servicio con información especialmente manipulada en el formulario de registro público. Esta vulnerabilidad se corrigió en la versión 9.13.8.
CPE cpe:2.3:a:dnnsoftware:dotnetnuke:*:*:*:*:*:*:*:*
References () https://github.com/dnnsoftware/Dnn.Platform/security/advisories/GHSA-vc6j-mcqj-rgfp - () https://github.com/dnnsoftware/Dnn.Platform/security/advisories/GHSA-vc6j-mcqj-rgfp - Vendor Advisory

09 Apr 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-09 16:15

Updated : 2025-08-26 00:43


NVD link : CVE-2025-32374

Mitre link : CVE-2025-32374

CVE.ORG link : CVE-2025-32374


JSON object : View

Products Affected

dnnsoftware

  • dotnetnuke
CWE
CWE-770

Allocation of Resources Without Limits or Throttling