CVE-2023-43382

Directory Traversal vulnerability in itechyou dreamer CMS v.4.1.3 allows a remote attacker to execute arbitrary code via the themePath in the uploaded template function.
Configurations

Configuration 1 (hide)

cpe:2.3:a:iteachyou:dreamer_cms:4.1.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-09-25 16:15

Updated : 2023-09-26 14:46


NVD link : CVE-2023-43382

Mitre link : CVE-2023-43382

CVE.ORG link : CVE-2023-43382


JSON object : View

Products Affected

iteachyou

  • dreamer_cms
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')