CVE-2013-5117
SQL injection vulnerability in the RSS page (DNNArticleRSS.aspx) in the ZLDNN DNNArticle module before 10.1 for DotNetNuke allows remote attackers to execute arbitrary SQL commands via the categoryid parameter.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0079 (0.8%)
Percentile: 73.9%
EPSS: 2026-05-06
Affects
zldnn:dnnarticleTechnical description
SQL injection vulnerability in the RSS page (DNNArticleRSS.aspx) in the ZLDNN DNNArticle module before 10.1 for DotNetNuke allows remote attackers to execute arbitrary SQL commands via the categoryid parameter.
Published: 3/12/2014, 2:55:30 PM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://osvdb.org/96306
- http://seclists.org/fulldisclosure/2013/Sep/9
- http://www.exploit-db.com/exploits/27602
- http://www.securityfocus.com/bid/61788
- http://www.zldnn.com/ViewArticle/Solution-for-DNNArticle-RSS-Security-Issue.aspx
- http://osvdb.org/96306
- http://seclists.org/fulldisclosure/2013/Sep/9
- http://www.exploit-db.com/exploits/27602