PT-2025-39199 · Dnn+1 · Dnn+1
Valadas
·
Published
2025-09-23
·
Updated
2025-09-29
·
CVE-2025-59547
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
DNN (formerly DotNetNuke) versions prior to 10.1.0
Description
DNN is an open-source web content management platform. The CKEditor file upload endpoint lacks sufficient filename sanitization, potentially allowing network endpoint probing. A crafted request can upload a file with Unicode characters, which could translate into a path exposing internal network resources. The issue affects the
/api/v1/upload endpoint. The filename parameter is vulnerable.Recommendations
Update to version 10.1.0 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ckeditor
Dnn