DotNetNuke Logging Provider Information Disclosure

  Bookmark
 and Share

DotNetNuke is an open source framework for creating and deploying websites. DotNetNuke is exposed to a remote information disclosure issue. Specifically, the issue occurs when the logging provider is not available while handling exceptions. DotNetNuke versions 3.0.0 through 5.5.1 are affected.

Ref: http://www.dotnetnuke.com/News/SecurityPolicy/securitybulletinno44/tabid/2035/Default.aspx

10.48.26 - CVE: Not Available
Platform: Cross Platform