RULE(RULE ID:321800)

Rule General Information
Release Date: 2018-04-27
Rule Name: DNN DNNPersonalization Cookie Remote Code Execution Vulnerability (CVE-2017-9822)
Severity:
CVE ID:
Rule Protection Details
Description: DNN (aka DotNetNuke) before 9.1.1 has Remote Code Execution via a cookie, aka "2017-08 (Critical) Possible remote code execution on DNN sites."
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:102213
http://www.dnnsoftware.com/community/security/security-center
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.dnnsoftware.com/community/security/security-center