Unrated severityNVD Advisory· Published Apr 8, 2025· Updated Apr 8, 2025
DNN allows the possibility of bypassing Captcha
CVE-2025-32036
Description
DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. The algorithm used to generate the captcha image shows the least complexity of the desired image. For this reason, the created image can be easily read by OCR tools, and the intruder can send automatic requests by building a robot and using this tool. This vulnerability is fixed in 9.13.8.
Affected products
1- Range: < 9.13.8
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/dnnsoftware/Dnn.Platform/commit/abda726e75f1938c8d89795b5dceb80dc4e2e6c5mitrex_refsource_MISC
- github.com/dnnsoftware/Dnn.Platform/security/advisories/GHSA-48q9-3p26-8595mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.