First published: Mon Sep 25 2023(Updated: )
Directory Traversal vulnerability in itechyou dreamer CMS v.4.1.3 allows a remote attacker to execute arbitrary code via the themePath in the uploaded template function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
iteachyou Dreamer CMS | =4.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43382 is a directory traversal vulnerability in iteachyou Dreamer CMS v.4.1.3 that allows a remote attacker to execute arbitrary code via the themePath in the uploaded template function.
The severity of CVE-2023-43382 is high, with a severity value of 8.8.
CVE-2023-43382 affects iteachyou Dreamer CMS v.4.1.3.
A remote attacker can exploit CVE-2023-43382 by using a directory traversal technique to execute arbitrary code through the themePath in the uploaded template function.
Currently, there is no information available regarding a fix or patch for CVE-2023-43382. It is recommended to follow the provided references for updates and further information.