CVE-2024-11978

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 29, 2024
CWE ID 36

Summary

CVE-2024-11978 is a newly identified vulnerability affecting DreamMaker, a software product by Interinfo. This issue involves a Path Traversal weakness, enabling unauthenticated remote assailants to manipulate file requests and access arbitrary system files, potentially leading to significant security risks. Interinfo is advised to address this vulnerability promptly to prevent potential attacks and data breaches. Users are encouraged to apply patches or updates as soon as they become available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share