Show filters
23 Total Results
Displaying 21-23 of 23
Sort by:
Attacker Value
Unknown

CVE-2023-43856

Disclosure Date: September 27, 2023 (last updated October 08, 2023)
Dreamer CMS v4.1.3 was discovered to contain an arbitrary file read vulnerability via the component /admin/TemplateController.java.
Attacker Value
Unknown

CVE-2023-43382

Disclosure Date: September 25, 2023 (last updated October 08, 2023)
Directory Traversal vulnerability in itechyou dreamer CMS v.4.1.3 allows a remote attacker to execute arbitrary code via the themePath in the uploaded template function.
Attacker Value
Unknown

CVE-2023-42279

Disclosure Date: September 21, 2023 (last updated March 08, 2024)
Dreamer CMS v4.1.3 was discovered to contain a SQL injection vulnerability via the model-form-management-field form.