Launch Week Day 1: Announcing Security Design Review
HIGH 8.6 NuGet

DNN.PLATFORM leaks NTLM hash via SMB Share Interaction with malicious user input

GHSA-mgfv-2362-jq96 · CVE-2025-52488

Published · Modified

Description

DNN.PLATFORM allows a specially crafted series of malicious interaction can expose NTLM hashes to a third party SMB server. This vulnerability is fixed in 10.0.1.

Ready to move

Start Securing

Free, no credit card | First findings in minutes