Improper access control in DotNetNuke - CVE-2015-2794

 

Improper access control in DotNetNuke - CVE-2015-2794

Published: August 20, 2016


Vulnerability identifier: #VU336
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2015-2794
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability: Public exploit is available

Vulnerability details

The vulnerability allows a remote attacker to gain complete control over vulnerable web application.

The vulnerability exists due to improper access control to DotnetNuke installation script /Install/InstallWizard.aspx. A remote unauthenticated attacker can guess SQL Server instance name and reinstall DotnetNuke application.

Successful exploitation of the vulnerability will allow an attacker to gain complete access to the web application.


Affected software

DotNetNuke

How to mitigate CVE-2015-2794

Update to version 07.04.01.


Links to Public Exploits and PoC-codes

External References

Related Security Bulletins