CVE-2023-27084
5.3MEDIUMPermissions vulnerability found in isoftforce Dreamer CMS v.4.0.1 allows local attackers to obtain sensitive information via the AttachmentController parameter.
Publicado: 3/16/2023Actualizado: 4/4/2025
Descripción
Permissions vulnerability found in isoftforce Dreamer CMS v.4.0.1 allows local attackers to obtain sensitive information via the AttachmentController parameter.
Análisis IAImpulsado por IA
Productos Afectados
iteachyoudreamer_cms
4.0.1
Referencias
- https://gitee.com/isoftforce/dreamer_cms/issues/I6GCUNBroken Link
- https://github.com/iteachyou-wjn/dreamer_cms/issues/9ExploitIssue TrackingThird Party Advisory
- https://gitee.com/isoftforce/dreamer_cms/issues/I6GCUNBroken Link
- https://github.com/iteachyou-wjn/dreamer_cms/issues/9ExploitIssue TrackingThird Party Advisory