PT-2024-21142 · Unknown · Dreamer Cms

Published

2024-02-29

·

Updated

2024-08-04

·

CVE-2024-25811

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dreamer CMS version 4.0.1
Description An access control issue allows attackers to download backup files and leak sensitive information.
Recommendations For Dreamer CMS version 4.0.1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2024-25811

Affected Products

Dreamer Cms