ZeroHour

CVE-2023-46886

PoC
CVSS 3.1
9.1 critical
EPSS
<1%p61
Published
()
Modified
Description

Dreamer CMS before version 4.0.1 is vulnerable to Directory Traversal. Background template management allows arbitrary modification of the template file, allowing system sensitive files to be read.

Vendors
iteachyou
Products
dreamer cms
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.