Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3qgf-wxfj-pf5j

Опубликовано: 30 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 allows remote attackers to access exposed administrative functionality without prior authentication.

A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 allows remote attackers to access exposed administrative functionality without prior authentication.

EPSS

Процентиль: 55%
0.00326
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-306

Связанные уязвимости

nvd
8 дней назад

A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 allows remote attackers to access exposed administrative functionality without prior authentication.

EPSS

Процентиль: 55%
0.00326
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-306