CVE-2018-9126 is a critical directory traversal vulnerability affecting the DNNArticle module 11 for DNN (formerly DotNetNuke). An unauthenticated remote attacker can exploit this flaw by requesting the /GetCSS.ashx/?CP=%2fweb.config URI, allowing them to read the web.config file. This exposure can lead to the discovery of sensitive database credentials, posing a severe risk to data confidentiality, integrity, and availability. With a CVSS score of 9.8 (CRITICAL), this vulnerability is easily exploitable over the network with low attack complexity and no user interaction required. The potential impact is high across all three security pillars (confidentiality, integrity, and availability), as an attacker could gain full control over the database. The EPSS score of 0.75256 further indicates a high likelihood of exploitation. While not listed in CISA's KEV catalog, exploit code for this vulnerability is publicly available on ExploitDB (EDB-44414). Despite the high severity and public exploit, there is currently no evidence of active exploitation, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11CPE matchmatch criteria | cpe:2.3:a:zldnn:dnnarticle:11:*:*:*:*:dnn:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.