CVE-2024-25811: Iteachyou Dreamer CMS

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

An access control issue in Dreamer CMS v4.0.1 allows attackers to download backup files and leak sensitive information.

Affected products

  • Iteachyou Dreamer CMS: version 4.0.1 only; version 4.1.3 only

Published 2024-03-21. Last modified 2026-06-17.