A vulnerability, which was classified as problematic, was found in Dreamer CMS up to 3.5.0. Affected is an unknown function of the component File Upload Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. VDB-224634 is the identifier assigned to this vulnerability.
History

Fri, 04 Apr 2025 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Iteachyou
Iteachyou dreamer Cms
CPEs cpe:2.3:a:dreamer_cms_project:dreamer_cms:*:*:*:*:*:*:*:* cpe:2.3:a:iteachyou:dreamer_cms:*:*:*:*:*:*:*:*
Vendors & Products Dreamer Cms Project
Dreamer Cms Project dreamer Cms
Iteachyou
Iteachyou dreamer Cms

Fri, 22 Nov 2024 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2023-03-30T23:00:06.477Z

Updated: 2024-11-22T21:49:38.257Z

Reserved: 2023-03-30T19:31:03.636Z

Link: CVE-2023-1746

cve-icon Vulnrichment

Updated: 2024-08-02T05:57:24.974Z

cve-icon NVD

Status : Modified

Published: 2023-03-30T23:15:06.583

Modified: 2025-04-04T15:15:06.847

Link: CVE-2023-1746

cve-icon Redhat

No data.