← Back to CVE List

CVE-2018-9126

Published: 2018-04-04T19:29Z
Last Modified: 2024-11-21T04:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The DNNArticle module 11 for DNN (formerly DotNetNuke) allows remote attackers to read the web.config file, and consequently discover database credentials, via the /GetCSS.ashx/?CP=%2fweb.config URI. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt