Dotnetnuke < 10.3.3 Portal administrator remote code execution (GHSA-hxc3-xv8x-w2g3)

high Nessus Plugin ID 339644

Synopsis

An ASP.NET application running on the remote web server is affected by a vulnerability.

Description

According to its self-reported version, the instance of Dotnetnuke running on the remote web server is prior to 10.3.3.
It is, therefore, affected by a vulnerability.

- A vulnerability could allow a Portal Administrator to execute arbitrary code on the DNN server under certain deployment configurations. A vulnerability was identified in the platform's theme management functionality where administrator-supplied content was not safely validated before being incorporated into server-side resources. Under certain deployment configurations, a Portal Administrator could exploit this issue to execute arbitrary code on the server with the privileges of the DNN application. Successful exploitation could lead to complete compromise of the affected DNN installation, including unauthorized access to application data, uploaded files, configuration settings, and other resources available to the application. The impact is particularly significant for multi-portal deployments, where a Portal Administrator for a single portal could potentially compromise the entire DNN installation, including other portals hosted on the same instance. Depending on the hosting environment security settings and application permissions, exploitation may also provide access to external resources or services available to the server. (GHSA-hxc3-xv8x-w2g3)

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Upgrade to Dotnetnuke version 10.3.3 or later.

See Also

http://www.nessus.org/u?44379cc4

Plugin Details

Severity: High

ID: 339644

File Name: dotnetnuke_GHSA-hxc3-xv8x-w2g3.nasl

Version: 1.1

Type: Remote

Family: CGI abuses

Published: 8/26/2026

Updated: 8/26/2026

Configuration: Enable thorough checks (optional)

Supported Sensors: Nessus

Enable CGI Scanning: true

Vulnerability Information

CPE: cpe:/a:dnnsoftware:dotnetnuke, cpe:/a:dotnetnuke:dotnetnuke

Required KB Items: installed_sw/DNN

Excluded KB Items: Settings/disable_cgi_scanning

Exploit Ease: No known exploits are available

Patch Publication Date: 8/25/2026

Vulnerability Publication Date: 8/25/2026

Reference Information

CWE: 94