github.com
https://github.com/dnnsoftware/Dnn.Platform/commit/3697c5344cef8d49214230f0cc2efcd9e93a00a8 CVE-2022-2922
MEDIUM
Relative Path Traversal in dnnsoftware/dnn.platform
Record summary
CVE-2022-2922 has a selected CVSS score of 4.9 (medium).
Description
Relative Path Traversal in GitHub repository dnnsoftware/dnn.platform prior to 9.11.0.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated May 20, 2025 · Source: CVE List
Affected products and versions
3| Product | Source | Version range | Status |
|---|---|---|---|
dnnsoftware/dnn.platformBrowse dnnsoftware / dnnsoftware/dnn.platform | CVE List | Before 9.11.0 | affected |
DotNetNuke.CoreBrowse NuGet / DotNetNuke.Core | GitHub Advisory | Before 9.11.0 · Fixed in 9.11.0 | affected |
DotNetNuke.WebBrowse NuGet / DotNetNuke.Web | GitHub Advisory | Before 9.11.0 · Fixed in 9.11.0 | affected |
References
5github.com
https://github.com/dnnsoftware/dnn.platform github.com
https://github.com/dnnsoftware/dnn.platform/commit/9b17351592fbde376506ba6705dbcc7a74a2a195 huntr.devConfirmation
https://huntr.dev/bounties/74918f40-dc11-4218-abef-064eb71a0703 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-2922