CVE-2023-27084
5.3MEDIUMPermissions vulnerability found in isoftforce Dreamer CMS v.4.0.1 allows local attackers to obtain sensitive information via the AttachmentController parameter.
Veröffentlicht: 3/16/2023Aktualisiert: 4/4/2025
Beschreibung
Permissions vulnerability found in isoftforce Dreamer CMS v.4.0.1 allows local attackers to obtain sensitive information via the AttachmentController parameter.
KI-AnalyseKI-gestützt
Betroffene Produkte
iteachyoudreamer_cms
4.0.1
Referenzen
- https://gitee.com/isoftforce/dreamer_cms/issues/I6GCUNBroken Link
- https://github.com/iteachyou-wjn/dreamer_cms/issues/9ExploitIssue TrackingThird Party Advisory
- https://gitee.com/isoftforce/dreamer_cms/issues/I6GCUNBroken Link
- https://github.com/iteachyou-wjn/dreamer_cms/issues/9ExploitIssue TrackingThird Party Advisory