Forum Discussion
THE_BLUE
Cirrostratus
5 years agoCVE-2018-9126 - DotNetNuke DNNarticle Directory Traversal
Is there any signature for CVE-2018-9126 provided by F5 ? if yes , then what is the name of signature so that we can enforce it in ASM ?
Gal_Goldshtein
Employee
5 years agoWe have added a dedicated signature on the last signature update that mitigates this vulnerability:
200007038 - DotNetNuke - GetCSS Arbitrary File Read
Also on a side note, the POC exploit for this vulnerability is matched by the following signature:
200000042 - ASP.NET configuration file access (web.config) (Parameter)
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects