DNN (aka DotNetNuke) 9.2 through 9.2.2 uses a weak encryption algorithm to protect input parameters. NOTE: this issue exists because of an incomplete fix for CVE-2018-15811.
| Software | From | Fixed in |
|---|---|---|
| dnnsoftware / dotnetnuke | 9.2 | 9.2.2.x |
DotNetNuke.Core
|
- | 9.3.0 |